R3166-R3206-HP High-End Firewalls VPN Command Reference-6PW101
40
Field Descri
p
tion
mode
Encapsulation mode for the IPsec profile:
• dvpn: DVPN tunnel mode
• tunnel: IPsec tunnel mode
security data flow
ACL referenced by the IPsec profile
As an IPsec profile does not reference any ACL, this field is
displayed as 0.
ike-peer name IKE peer referenced by the IPsec profile
perfect forward secrecy Whether PFS is enabled
proposal name IPsec proposal referenced by the IPsec profile
IPsec sa local duration(time based) Time-based SA lifetime at the local end
IPsec sa local duration(traffic based) Traffic-based SA lifetime at the local end
display ipsec proposal
Syntax
display ipsec proposal [ proposal-name ]
View
Any view
Default level
1: Monitor level
Parameters
proposal-name: Name of a proposal, a string of 1 to 15 characters.
Description
Use the display ipsec proposal command to display information about IPsec proposals.
If you do not specify any parameters, the command displays information about all IPsec proposals.
Related commands: ipsec proposal.
Examples
# Display information about all IPsec proposals.
<Sysname> display ipsec proposal
IPsec proposal name: prop2
encapsulation mode: tunnel
transform: ah-new
AH protocol: authentication sha1-hmac-96
IPsec proposal name: prop1
encapsulation mode: transport
transform: esp-new
ESP protocol: authentication md5-hmac-96, encryption des