Cisco Cisco Packet Data Interworking Function (PDIF) Guida Alla Risoluzione Dei Problemi
show crypto
▀ show crypto map summary
▄ Cisco ASR 5000 Series Statistics and Counters Reference
OL-22990-02
Field
Description
HMAC md5
The total number of IKEv2 security associations using a keyed-Hash Message Authentication Code (HMAC)
with the cryptographic hash function Message Digest 5 truncated to 96 bits.
with the cryptographic hash function Message Digest 5 truncated to 96 bits.
DH Group 1
The total number of IKEv2 security associations using Diffie-Hellman Group 1 security (the lowest security
level). DH Group 1 provides 768 bits of key exchange cryptographic strength.
This is a modular exponential (MODP) DH group.
level). DH Group 1 provides 768 bits of key exchange cryptographic strength.
This is a modular exponential (MODP) DH group.
DH Group 2
The total number of IKEv2 security associations using Diffie-Hellman Group 2 security. DH Group 2 (the
default) provides 1024 bits of key exchange cryptographic strength.
This is a modular exponential (MODP) DH group.
default) provides 1024 bits of key exchange cryptographic strength.
This is a modular exponential (MODP) DH group.
DH Group 5
The total number of IKEv2 security associations using Diffie-Hellman Group 5 security. DH Group 5 provides
1536 bits of key exchange cryptographic strength.
This is a modular exponential (MODP) DH group.
1536 bits of key exchange cryptographic strength.
This is a modular exponential (MODP) DH group.
DH Group 14
The total number of IKEv2 security associations using Diffie-Hellman Group 14 security (the highest security
level). DH Group 14 provides 2048 bits of key exchange cryptographic strength.
This is a modular exponential (MODP) DH group.
level). DH Group 14 provides 2048 bits of key exchange cryptographic strength.
This is a modular exponential (MODP) DH group.
IPSec SA
Protocol esp
The total number of IPsec security associations using Encapsulating Security Payload (ESP) protocol.
Protocol ah
The total number of IPsec security associations using Authentication Header (AH) protocol.
Cipher null
The total number of IPsec security associations using the block cipher NULL. All IKEv2 IPsec security
association derived traffic is sent in the clear.
association derived traffic is sent in the clear.
Cipher des
The total number of IPsec security associations using the block cipher Data Encryption Standard in Cypher
Block Chaining (CBC) mode.
Block Chaining (CBC) mode.
Cipher 3des
The total number of IPsec security associations using the block cipher Triple Data Encryption Standard in
Cypher Block Chaining (CBC) mode.
Cypher Block Chaining (CBC) mode.
Cipher aes-cbc-
128
128
The total number of IPsec security associations using the block cipher Advanced Encryption Standard with a
128-bit key in Cypher Block Chaining (CBC) mode.
128-bit key in Cypher Block Chaining (CBC) mode.
Cipher aes-cbc-
256
256
The total number of IPsec security associations using the block cipher Advanced Encryption Standard with a
256-bit key in Cypher Block Chaining (CBC) mode.
256-bit key in Cypher Block Chaining (CBC) mode.
HMAC sha1-96
The total number of IPsec security associations using a keyed-Hash Message Authentication Code (HMAC)
with the cryptographic hash function Secure Hash Algorithm-1 truncated to 96 bits (the default).
with the cryptographic hash function Secure Hash Algorithm-1 truncated to 96 bits (the default).
HMAC md5-96
The total number of IPsec security associations using a keyed-Hash Message Authentication Code (HMAC)
with the cryptographic hash function Message Digest 5 truncated to 96 bits.
with the cryptographic hash function Message Digest 5 truncated to 96 bits.
DH Group 1
The total number of IPsec security associations using Diffie-Hellman Group 1 security (the lowest security
level). DH Group 1 provides 768 bits of key exchange cryptographic strength.
This is a modular exponential (MODP) DH group.
level). DH Group 1 provides 768 bits of key exchange cryptographic strength.
This is a modular exponential (MODP) DH group.
DH Group 2
The total number of IPsec security associations using Diffie-Hellman Group 2 security. DH Group 2 (the
default) provides 1024 bits of key exchange cryptographic strength.
This is a modular exponential (MODP) DH group.
default) provides 1024 bits of key exchange cryptographic strength.
This is a modular exponential (MODP) DH group.
DH Group 5
The total number of IPsec security associations using Diffie-Hellman Group 5 security. DH Group 5 provides
1536 bits of key exchange cryptographic strength.
This is a modular exponential (MODP) DH group.
1536 bits of key exchange cryptographic strength.
This is a modular exponential (MODP) DH group.