R3721-F3210-F3171-HP High-End Firewalls VPN Command Reference-6PW101
70
Field Description
security data flow
ACL referenced by the IPsec profile
As an IPsec profile does not reference any ACL, this field is
displayed as 0.
ike-peer name IKE peer referenced by the IPsec profile
perfect forward secrecy Whether PFS is enabled
proposal name IPsec proposal referenced by the IPsec profile
Synchronization inbound
anti-replay-interval
Inbound anti-replay window information synchronization
interval, expresses in the number of received packets.
Synchronization outbound
anti-replay-interval
Outbound anti-replay sequence number synchronization interval,
expresses in the number of sent packets.
IPsec sa local duration(time based) Time-based SA lifetime at the local end
IPsec sa local duration(traffic based) Traffic-based SA lifetime at the local end
display ipsec proposal
Syntax
display ipsec proposal [ proposal-name ] [ | { begin | exclude | include } regular-expression ]
View
Any view
Default level
1: Monitor level
Parameters
proposal-name: Name of a proposal, a string of 1 to 15 characters.
|: Filters command output by specifying a regular expression. For more information about regular
expressions, see Getting Started Guide.
begin: Displays the first line that matches the specified regular expression and all lines that follow.
exclude: Displays all lines that do not match the specified regular expression.
include: Displays all lines that match the specified regular expression.
regular-expression: Specifies a regular expression, a case-sensitive string of 1 to 256 characters.
Description
Use display ipsec proposal to display information about IPsec proposals.
If you do not specify any parameters, the command displays information about all IPsec proposals.
Related commands: ipsec proposal.
Examples
# Display information about all IPsec proposals.
<Sysname> display ipsec proposal
IPsec proposal name: prop2