Installation Guide

Table Of Contents
Next Request Message id=29
Total Keepalive sent: 0 Total Keepalive Received: 0
Time Past Since Last Msg: 60
child sa:
id 1
local selector 0.0.0.0/0 - 255.255.255.255/65535
remote selector 0.0.0.0/0 - 255.255.255.255/65535
ESP spi in/out: 0x0000004b/0x0000005e
Encryption: aes-gcm-256, ICV Size: 16 octects, Esp_hmac: null
Authentication: null DH Group:none , Mode: tunnel
Show ipsec proposal:
device# Show ipsec proposal
Name : prop_red
Protocol : ESP
Encryption : aes-gcm-256
Authentication: NULL
ESN : Enable
Mode : Tunnel
Show ipsec Profile:
device# Show ipsec Profile
Name : red
Ike Profile : red
Lifetime : 28800
Anti-replay service : Enabled
Replay window size : 64
DH group : None
Proposal : red
show ipsec sa:
device#show ipsec sa
IPSEC Security Association Database(Entries:2)
SPDID(vrf:if) Dir Encap SPI Destination
AuthAlg EncryptAlg Status Mode
0:v2 out ESP 400 ::
sha1 Null ACT TRAN
0:v2 in ESP 400 FE80::
sha1 Null ACT TRAN
1:Tun1 in ESP 0xBD481319 1.2.10.2
Null AES-GCM-256 ACT TNL
1:Tun1 out ESP 0x9EAB77D6 1.2.10.2
Null AES-GCM-256 ACT TNL
device# Show ipsec sa address 1.2.10.2 detail
Total ipsec SAs: 2
0:
interface : tnl 1
Local address: 1.2.45.1/500, Remote address: 1.2.45.2/500
Inside vrf: default-vrf
Local identity (addr/mask/prot/port): address(0.0.0.0/0/0/0)
Remote identity(addr/mask/prot/port): address(0.0.0.0/0/0/0)
DF-bit: clear
Profile-name: red
DH group: none
Direction: inbound, SPI: 0x0000004b
Mode: tunnel,
Protocol: esp, Encryption: gcm-256, Authentication: null
ICV size: 16 bytes
lifetime(sec): Expiring in (4606816/3576)
Anti-replay service: Enabled, Replay window size: 0
Status: ACTIVE
slot Assigned 0
Product Overview
Brocade NetIron MLXe Series Hardware Installation Guide
53-1004203-03 55