Administrator Guide
Interface: GigabitEthernet 1/1
Link Local address: fe80::201:e8ff:fe40:4d10
IPSecv6 policy name: OSPFv3-1-500
inbound ah sas
spi : 500 (0x1f4)
transform : ah-md5-hmac
in use settings : {Transport, }
replay detection support : N
STATUS : ACTIVE
outbound ah sas
spi : 500 (0x1f4)
transform : ah-md5-hmac
in use settings : {Transport, }
replay detection support : N
STATUS : ACTIVE
inbound esp sas
outbound esp sas
Interface: GigabitEthernet 1/2
Link Local address: fe80::201:e8ff:fe40:4d11
IPSecv6 policy name: OSPFv3-1-600
inbound ah sas
outbound ah sas
inbound esp sas
spi : 600 (0x258)
transform : esp-des esp-sha1-hmac
in use settings : {Transport, }
replay detection support : N
STATUS : ACTIVE
outbound esp sas
spi : 600 (0x258)
transform : esp-des esp-sha1-hmac
in use settings : {Transport, }
replay detection support : N
STATUS : ACTIVE
show crypto ipsec sa ipv6 Command Fields
Field
Description
Interface IPv6 interface
Link local
address
IPv6 address of interface
IPSecv6 policy
name
Name of the IPsec security policy applied to the interface.
inbound/
outbound ah
Authentication policy applied to inbound or outbound traffic.
inbound/
outbound esp
Encryption policy applied to inbound or outbound traffic.
spi Security policy index number used to identify the policy.
transform Security algorithm that is used to provide authentication, integrity, and confidentiality.
in use settings Transform that the SA uses (only transport mode is supported).
1138 Open Shortest Path First (OSPFv2 and OSPFv3)