The display hardware fast-forwarding configurations command displays the configurations of hardware-based fast forwarding.
In versions earlier than V600R007C20SPC200, all models support this command. For V600R007C20SPC200 and later versions, device batches are distinguished by BomID Version (which can be checked using the display version command). All models except the USG6680E and USG6712E/6716E whose BomID Version is 003 or later or whose device BOM numbers contain "-001" support this command.
After configuring hardware-based fast forwarding, you can run the display hardware fast-forwarding configurations command to view the configurations.
# Display the configurations of hardware-based fast forwarding.
<sysname> display hardware fast-forwarding configurations
===========================================================================================
Hardware Fast-forwarding Information
===========================================================================================
Fast-forwarding Switch : Enable(default is Enable)
Fast-forwarding Session TTL : 80% of Session TTL(default is 80%)
---------------------------------------------------------------------
Fast-forwarding Basic Filter: Disable
---------------------------------------------------------------------
Fast-forwarding Advanced Filter: Enable(filter type is user-defined)
Advanced filter configuration as follow:
protocol udp existed-time 120
---------------------------------------------------------------------
IPSec fast-forwarding enable : Enable(default is Enable)
IPSec Fragmentation Before Encryption : Disable
IPSec DF option : COPY
IPSec Ignore DF-bit : Disable
IPSec CAR : Enable
============================================================================================
Item |
Description |
|---|---|
Fast-forwarding Switch |
Status of hardware fast forwarding
|
Fast-forwarding Session TTL |
Percentage of the aging time of the hardware fast forwarding table in the CPU session entry aging time |
Fast-forwarding Basic Filter |
Status of basic filtering criteria for hardware fast forwarding
|
Fast-forwarding Advanced Filter |
Status of advanced filtering criteria for hardware fast forwarding
|
Advanced filter configuration as follow |
Configuration of the advanced filtering condition |
IPSec Fast-forwarding Enable |
Whether IPSec hardware fast forwarding is enabled:
|
IPSec Fragmentation Before Encryption |
Whether packets are fragmented before being encrypted:
|
IPSec DF option |
DF option of the IPSec tunnel:
|
IPSec Fragmentation Ignore DF-bit |
Whether to ignore the DF bit:
|
IPSec CAR Enable |
Whether the rate of IPSec packets is limited:
|