3com MSR 20-20 참조 매뉴얼
2129
replay packet: 0
packet too long: 0
wrong SA: 0
display ipsec tunnel
Syntax
display ipsec tunnel
View
Any view
Parameter
None
Description
Use the display ipsec tunnel command to display IPSec tunnel information.
Example
# Display information about IPSec tunnels.
<Sysname> display ipsec tunnel
total tunnel : 1
------------------------------------------------
Connection ID : 3
Perfect forward secrecy: None
SA’s SPI :
Inbound :
187199087 (0xb286e6f) [ESP]
Outbound : 3562274487 (0xd453feb7) [ESP]
Tunnel :
Local Address:
44.44.44.44
Remote Address : 44.44.44.55
Flow :
(8 times matched)
Sour Addr : 44.44.44.0/255.255.255.0
Port: 0
Protocol : IP
Table 567 Description on the fields of the display ipsec statistics command
Field Description
input/output security packets
Number of inbound IPSec protected packets and number
of outbound IPSec protected packets
of outbound IPSec protected packets
input/output security bytes
Number of inbound IPSec protected bytes and number of
outbound IPSec protected bytes
outbound IPSec protected bytes
input/output dropped security
packets
packets
Number of inbound IPSec protected packets that are
discarded by the device and number of outbound IPSec
protected packets that are discarded by the device
discarded by the device and number of outbound IPSec
protected packets that are discarded by the device
dropped security packet detail
Detailed information about inbound/outbound packets
that get dropped
that get dropped
not enough memory
Number of packets dropped due to lack of memory
can’t find SA
Number of packets dropped due to finding no security
association
association
queue is full
Number of packets dropped due to full queues
authentication has failed
Number of packets dropped due to authentication failure
wrong length
Number of packets dropped due to wrong packet length
replay packet
Number of packets replayed
packet too long
Number of packets dropped due to excessive packet
length
length
wrong SA
Number of packets dropped due to improper SA