CLI Guide
show crypto ipsec policy
Display the configuration of IPsec authentication and encryption policies.
Syntax show crypto ipsec policy [name name]
Parameters
name name (OPTIONAL) Displays configuration details about a specified
policy.
Defaults none
Command Modes
EXEC
EXEC Privilege
Supported Modes Full–Switch
Command History
Version Description
9.9(0.0) Introduced on the FN IOM.
9.2(0.0) Introduced on the MXL 10/40GbE Switch IO Module.
Usage Information
The show crypto ipsec policy command output displays the AH and ESP
parameters configured in IPsec security policies, including the SPI number, keys,
and algorithms used.
When configured in a helper-reject role, an OSPFv3 router ignores the Grace LSAs
that it receives from a restarting OSPFv3 neighbor.
show crypto ipsec sa ipv6
Display the IPsec security associations (SAs) used on OSPFv3 interfaces.
Syntax
show crypto ipsec sa ipv6 [interface interface]
Parameters
interface interface
(OPTIONAL) Displays information about the SAs used on a
specified OSPFv3 interface, where interface is one of the
following values:
• For a Port Channel interface, enter port-channel then
the port channel number.
• For a 10-Gigabit Ethernet interface, enter
TenGigabitEthernet then the slot/port number.
• For a VLAN interface, enter vlan vlan-id. The valid
VLAN IDs range is from 1 to 4094.
Open Shortest Path First (OSPFv2 and OSPFv3)
1137