Cisco Cisco Packet Data Interworking Function (PDIF) Guía Para Resolver Problemas
show crypto
show crypto ipsec security-associations ▀
Cisco ASR 5000 Series Statistics and Counters Reference ▄
OL-22990-02
show crypto ipsec security-associations
Field
Description
Map Name
The name of the crypto map facilitating the security association.
Local Address
The IP address of the interface on the security gateway facilitating the security association.
Current Peer
The IP address of the interface on the peer gateway facilitating the security association.
Crypto Type
The type of crypto map facilitating the security association, which can be:
Dynamic Map
IKEv1 Map
IKEv2 Map
Manual Map
SA State
The state of the security association, which can be:
Established
Partially Established
No SAs
IPSec Manager
The identifying number of the IPsec manager facilitating the security association.
Rekeying
The state of rekeying for the security association, which can be:
Enabled
Disabled
Redundancy Status
The state of the security association, which can be:
Original Tunnel: No failure has occurred.
Recovered Session: A failure has occurred and a recovered session has been created.
Allocated Address
The IP address allocated to the Network Access Identifiers (NAIs) of the users.
Phase 1
The NAI used in Phase 1 authentication.
Phase 2
The NAI used in Phase 2 authentication.
Encoded
The number of packets and bytes of data that have been encoded for the security association.
Encoded Errors
The number of errors that occurred while the packets were being encoded.
Decoded
The number of packets and bytes of data that have been decoded for the security association.
Decoded Errors
The number of errors that occurred while the packets were being decoded.
Authentication
Errors
Errors
The number of errors that occurred during authentication.
Replay Errors
The number of replay errors that occurred.
Too short Errors
The number of too short errors that occurred.