User`s guide
396
AH
The AH algorithm in use, if any.
ESP Auth
The ESP authentication algorithm in use, if any.
ESP Enc
The ESP encryption algorithm in use, if any.
IPComp
The data compression algorithm in use, if any.
KBytes Delivered
The total amount of data that has been transferred (in both directions) over this IPsec
tunnel.
KBytes Left
The amount of data left to be transferred over the IPsec tunnel before the data duration
limit is reached. The data duration is negotiated between the router and the remote device.
Time Left
The time left (in seconds) before the time duration limit is reached. The time duration is
negotiated between the router and the remote device.
Interface
The interface over which the IPsec tunnel is on.
Related CLI Commands
Command
Options
Description
sastat [dyn]
Displays the current status of all of the IPsecs tunnels.
The optional “dyn” parameter can be used to display
the status of the dynamic IPsec tunnels.
sastat [dyn] <first> <last>
Displays the current status of the IPsec tunnels in the
range from <first> to <last>.
e.g. sastat 0 49
or sastat dyn 0 49
sastat [dyn] peer <peer>
Displays the current status of the IPsec tunnels that
match the given peer. The <peer> value can contain
the ‘*’ wildcard character.
e.g. sastat peer uk-north-*
or sastat dyn peer uk-north-*
IPsec peers
This page displays the current status of the IPsec peers.
This is the list of remote devices that have successfully negotiated an IPsec tunnel with the
router.
Peer IP Address