для Cisco Cisco Tunnel Terminating Gateway (TTG)

Скачать
Страница из 4778
show crypto   
▀  show crypto ipsec security-associations 
 
 
▄  Statistics and Counters Reference, StarOS Release 18  
3450 
   
Field
 
Description
 
Too short Errors 
The number of too short errors that occurred. 
IPSec SA 
Diffie-Hellman 
Group 
The number of the Diffie-Hellman group to which the security association belongs. 
Outbound esp sas 
spi 
The Security Parameter Index (SPI) of the outbound ESP security association. 
transform 
hmac 
The keyed-Hash Message Authentication Code used for the outbound ESP security association, which can 
be: 
 
sha1-96 
 
md5-96 
cipher 
The cipher used for the outbound ESP security association, which can be: 
 
null 
 
des 
 
3des 
 
aes-cbc-128 
 
aes-cbc-256 
negotiated soft 
lifetime (kb/sec) 
The soft lifetime in kilobits and/or seconds for the outbound ESP security association, created when a 
successful rekey has occurred. The soft lifetime is used to warn that the security association is about to 
expire, allowing the security gateway to create a new lifetime prior to the expiration of the hard lifetime. 
remaining soft 
lifetime (kb/sec) 
The remaining soft lifetime in kilobits and/or seconds. 
negotiated hard 
lifetime (kb/sec) 
The hard lifetime in kilobits and/or seconds for the outbound ESP security association. The hard lifetime is 
the number of kilobits and/or seconds used before the security association expires. 
remaining hard 
lifetime (kb/sec) 
The remaining hard lifetime in kilobits and/or seconds. 
Encoded 
The number of encoded packets and bytes of data for the outbound ESP security association. 
Encoded Errors 
The number of errors that occurred while the packets were being encoded. 
Inbound esp sas 
spi 
The Security Parameter Index (SPI) of the inbound ESP security association. 
transform 
hmac 
The keyed-Hash Message Authentication Code used for the inbound ESP security association, which can 
be: 
 
sha1-96 
 
md5-96