HP-UX IPSec version A.02.01 Administrator's Guide

Troubleshooting HP-UX IPSec
Troubleshooting Utilities Overview
Chapter 7 199
Getting General Information
Getting SA Information
Getting Policy Information
Table 7-1 Getting General Information
Task Command
Get status of HP-UX IPSec
components.
ipsec_admin -status
Show all active and
configured IPsec policies,
IKE policies, cache entries,
SAs, active IP interfaces,
bypass interfaces, and
display current audit file.
ipsec_report -all
Table 7-2 Getting SA Information
Task Command
Show current IKE (Main
Mode or Aggressive Mode)
SAs.
ipsec_report -sa ike
Show current IPsec SAs. ipsec_report -sa ipsec
Table 7-3 Getting Policy Information
Task Command
Determine which IPsec
policy matches a packet.
ipsec_policy
Show host IPsec policies in
the configuration database.
ipsec_config show host
Show active host IPsec
policies.
ipsec_report -host
ipsec_report -host [active]