R2511-HP MSR Router Series Security Command Reference(V5)
274
display ikev2 sa
Use display ikev2 sa to display the current IKEv2 SA information.
Syntax
display ikev2 sa [ { local | remote } { ipv4-address | ipv6 ipv6-address } ] [ verbose ] [ | { begin |
exclude | include } regular-expression ]
Views
Any view
Default command level
1: Monitor level
Parameters
local: Displays information about the IKEv2 SAs that use a specified local address.
remote: Displays information about the IKEv2 SAs that use a specified remote address.
ipv4-address: Specifies the local or remote IPv4 address.
ipv6 ipv6-address: Specifies the local or remote IPv6 address.
verbose: Displays detailed information. Without this keyword, the command displays the summary
information.
|: Filters command output by specifying a regular expression. For more information about regular
expressions, see Fundamentals Configuration Guide.
begin: Displays the first line that matches the specified regular expression and all lines that follow.
exclude: Displays all lines that do not match the specified regular expression.
include: Displays all lines that match the specified regular expression.
regular-expression: Specifies a regular expression, a case-sensitive string of 1 to 256 characters.
Usage guidelines
With no parameter specified, the command displays the summary information of all IKEv2 SAs.
Examples
# Display the summary information of all IKEv2 SAs.
<Sysname> display ikev2 sa
total SAs: 1
connection-id peer flag
------------------------------------------------------------------------
1 1.1.1.2 RD|ST
flag meaning
RD--READY ST--STAYALIVE FD--FADING TO--TIMEOUT
# Display the detailed information of all IKEv2 SAs.
<Sysname> display ikev2 sa verbose
-----------------------------------------------
connection id : 1
vpn-instance :










