R3303-HP 6600/HSR6600 Routers Security Configuration Guide

278
Ste
p
Command
Remarks
3. Apply a QoS policy to
the IPsec tunnel interface.
qos apply policy policy-name { inbound |
outbound }
For more information about
the command, see ACL and
QoS Command Reference.
Configuring IPsec for IPv6 routing protocols
IMPORTANT:
Do not apply an IPsec policy used for an IPv6 routin
g
protocol to an interface. If you do so, the interface
w
ill drop all packets, because the IPsec policy references no ACL.
Complete the following tasks to configure IPsec for IPv6 routing protocols:
Task Remarks
Configuring an IPsec transform set Required.
Configuring a manual IPsec policy
Required.
ACLs and IPsec tunnel addresses are not needed.
Applying an IPsec policy to an IPv6 routing
protocol
Required.
See Layer 3IP Routing Configuration Guide.
Displaying and maintaining IPsec
Task Command
Remarks
Display IPsec policy information.
display ipsec policy [ brief | name
policy-name [ seq-number ] ] [ | { begin |
exclude | include } regular-expression ]
Available in any view.
Display IPsec policy template
information.
display ipsec policy-template [ brief |
name template-name [ seq-number ] ] [ |
{ begin | exclude | include }
regular-expression ]
Available in any view.
Display the configuration of IPsec
profiles.
display ipsec profile [ name
profile-name ] [ | { begin | exclude |
include } regular-expression ]
Available in any view.
Display IPsec transform set
information.
display ipsec transform-set
[ transform-set-name ] [ | { begin |
exclude | include } regular-expression ]
Available in any view.
Display IPsec SA information.
display ipsec sa [ brief | policy
policy-name [ seq-number ] | remote
[ ipv6 ] ip-address ] [ | { begin | exclude
| include } regular-expression ]
Available in any view.
Display IPsec packet statistics.
display ipsec statistics [ tunnel-id integer ]
[ | { begin | exclude | include }
regular-expression ]
Available in any view.