Cisco Cisco Packet Data Interworking Function (PDIF)
Extended Sequence Number
▀ Verifying ESN Configuration
▄ IPSec Reference, StarOS Release 17
174
Verifying ESN Configuration
The following Exec mode
show
commands display the current status of ESN support in the current StarOS
configuration.
show crypto ipsec transform-set
This command displays the IPSec transform set parameters as configured in a specific context and includes ESN status.
A sample output appears below:
A sample output appears below:
show crypto ipsec transform-set tsela
IKEv2 IPSec Transform-Set tselsa :
Cipher : aes-cbc-128
HMAC : sha1-96
DH Group : none
Encaps Mode : TUNNEL
ESN : Enabled/Disabled
IKEv2 IPSec Transform-Set tselsa :
Cipher : aes-cbc-128
HMAC : sha1-96
DH Group : none
Encaps Mode : TUNNEL
ESN : Enabled/Disabled
show crypto template
This command displays ESN status under IPSec SA Payload. A sample output appears below.
show crypto template tag foo-sa0
IPSec SA Payload 1/2 (SIP Address - Static Pool)
Name : foo-sa0
IPSec SA Transform 1/1
Transform Set: tselsa
Protocol: esp
Encryption Cipher: aes-cbc-128
Hashed Message Authentication Code: sha1-96
Diffie-Hellman Group: none
ESN : Enabled
IPSec SA Payload 1/2 (SIP Address - Static Pool)
Name : foo-sa0
IPSec SA Transform 1/1
Transform Set: tselsa
Protocol: esp
Encryption Cipher: aes-cbc-128
Hashed Message Authentication Code: sha1-96
Diffie-Hellman Group: none
ESN : Enabled