R3166-R3206-HP High-End Firewalls VPN Command Reference-6PW101

46
Field Descri
p
tion
not enough memory Number of packets dropped due to lack of memory
can't find SA Number of packets dropped due to finding no security association
queue is full Number of packets dropped due to full queues
authentication has failed Number of packets dropped due to authentication failure
wrong length Number of packets dropped due to wrong packet length
replay packet Number of packets replayed
packet too long Number of packets dropped due to excessive packet length
wrong SA Number of packets dropped due to improper SA
display ipsec tunnel
Syntax
display ipsec tunnel [ active | standby ]
View
Any view
Default level
1: Monitor level
Parameters
None
Description
Use the display ipsec tunnel command to display information about IPsec tunnels.
If you do not specify any parameters, the command displays information about all IPsec tunnels.
Examples
# Display information about IPsec tunnels.
<Sysname> display ipsec tunnel
total tunnel : 2
------------------------------------------------
connection id: 3
perfect forward secrecy:
SA's SPI:
inbound: 187199087 (0xb286e6f) [ESP]
outbound: 3562274487 (0xd453feb7) [ESP]
tunnel:
local address: 44.44.44.44
remote address : 44.44.44.55
flow:
sour addr : 44.44.44.0/255.255.255.0 port: 0 protocol : IP
dest addr : 44.44.44.0/255.255.255.0 port: 0 protocol : IP
current Encrypt-card: None