< Home

Verifying the Configuration of IPSec Tunnel Establishment Using a Virtual Tunnel Interface

Prerequisites

The configurations of the IPSec tunnel that is established using a virtual tunnel interface are complete.

Procedure

  • Run the display ipsec proposal [ brief | name proposal-name ] or display ipsec proposal [ brief | name proposal-name ] ctrl-plane command to check IPSec proposal information.
  • Run the display ipsec profile [ brief | name profile-name ] or display ipsec profile [ brief | name profile-name ] ctrl-plane command to check IPSec profile information.
  • Run the display ipsec sa [ [ brief ] [ slot slot-id cpu cpu-id ] | duration | policy policy-name [ seq-number ] | profile profile-name | remote { ipv4-address | ipv6-address } ] command to check IPSec SA information about the current system.
  • Run the display ipsec sa [ [ brief ] [ slot slot-id cpu cpu-id ] | policy policy-name [ seq-number ] | profile profile-name | remote { ipv4-address | ipv6-address } ] { active | standby } command to check IPSec SA information about the current system.
  • Run the display ipsec sa [ brief ] [ slot slot-id cpu cpu-id ] [ all-systems | vsys vsys-name ] [ active | standby ] command to check IPSec SA information about all systems including the root system and virtual system.
  • Run the display ipsec global config command to check global IPSec configuration.
  • Check IKE information. See Verifying the IKE Configuration.
Copyright © Huawei Technologies Co., Ltd.
Copyright © Huawei Technologies Co., Ltd.
< Previous topic