Cisco Cisco Packet Data Gateway (PDG)

Page de 4778
show crypto   
▀  show crypto map summary 
 
 
▄  Statistics and Counters Reference, StarOS Release 18  
3462 
   
Field
 
Description
 
DH Group 1 
The total number of IKEv2 security associations using Diffie-Hellman Group 1 security (the lowest 
security level). DH Group 1 provides 768 bits of key exchange cryptographic strength.  
This is a modular exponential (MODP) DH group. 
DH Group 2 
The total number of IKEv2 security associations using Diffie-Hellman Group 2 security. DH Group 2 
(the default) provides 1024 bits of key exchange cryptographic strength.  
This is a modular exponential (MODP) DH group. 
DH Group 5 
The total number of IKEv2 security associations using Diffie-Hellman Group 5 security. DH Group 5 
provides 1536 bits of key exchange cryptographic strength.  
This is a modular exponential (MODP) DH group. 
DH Group 14 
The total number of IKEv2 security associations using Diffie-Hellman Group 14 security (the highest 
security level). DH Group 14 provides 2048 bits of key exchange cryptographic strength.  
This is a modular exponential (MODP) DH group. 
IPSec SA 
Protocol esp 
The total number of IPsec security associations using Encapsulating Security Payload (ESP) protocol. 
Protocol ah 
The total number of IPsec security associations using Authentication Header (AH) protocol. 
Cipher null 
The total number of IPsec security associations using the block cipher NULL. All IKEv2 IPsec security 
association derived traffic is sent in the clear. 
Cipher des 
The total number of IPsec security associations using the block cipher Data Encryption Standard in 
Cypher Block Chaining (CBC) mode. 
Cipher 3des 
The total number of IPsec security associations using the block cipher Triple Data Encryption Standard in 
Cypher Block Chaining (CBC) mode. 
Cipher aes-cbc-128 
The total number of IPsec security associations using the block cipher Advanced Encryption Standard 
with a 128-bit key in Cypher Block Chaining (CBC) mode. 
Cipher aes-cbc-256 
The total number of IPsec security associations using the block cipher Advanced Encryption Standard 
with a 256-bit key in Cypher Block Chaining (CBC) mode. 
HMAC sha1-96 
The total number of IPsec security associations using a keyed-Hash Message Authentication Code 
(HMAC) with the cryptographic hash function Secure Hash Algorithm-1 truncated to 96 bits (the 
default). 
HMAC md5-96 
The total number of IPsec security associations using a keyed-Hash Message Authentication Code 
(HMAC) with the cryptographic hash function Message Digest 5 truncated to 96 bits. 
DH Group 1 
The total number of IPsec security associations using Diffie-Hellman Group 1 security (the lowest 
security level). DH Group 1 provides 768 bits of key exchange cryptographic strength.  
This is a modular exponential (MODP) DH group. 
DH Group 2 
The total number of IPsec security associations using Diffie-Hellman Group 2 security. DH Group 2 (the 
default) provides 1024 bits of key exchange cryptographic strength.  
This is a modular exponential (MODP) DH group. 
DH Group 5 
The total number of IPsec security associations using Diffie-Hellman Group 5 security. DH Group 5 
provides 1536 bits of key exchange cryptographic strength.  
This is a modular exponential (MODP) DH group. 
DH Group 14 
The total number of IPsec security associations using Diffie-Hellman Group 14 security (the highest 
security level). DH Group 14 provides 2048 bits of key exchange cryptographic strength.  
This is a modular exponential (MODP) DH group.