- show services ipsec-vpn ipsec security-associations
- <brief | detail | extensive>
- <service-set service-set-name>
Command introduced before JUNOS Release 7.4.
(Adaptive services interface only) Display IPSec security associations for the specified service set. If no service set is specified, the security associations for all service sets are displayed.
none — Display standard information about IPSec security associations for all service sets.
brief | detail | extensive — (Optional) Display the specified level of output.
service-set service-set-name — (Optional) Display information about a particular service set.
view
Table 243 lists the output fields for the show services ipsec-vpn ipsec security-associations command. Output fields are listed in the approximate order in which they appear.
Table 243: show services ipsec-vpn ipsec security-associations Output Fields
show services ipsec-vpn ipsec security associations extensive
user@host> show services ipsec-vpn ipsec security-associations
extensive Service set: service-set-1 Rule: _junos_, Term: term-1, Tunnel index: 1 Local gateway: 101.101.101.2, Remote gateway: 14.14.14.4 IPSec inside interface: sp-2/0/0.1 Local identity: ipv4_subnet(any:0,[0..7]=0.0.0.0/0) Remote identity: ipv4_subnet(any:0,[0..7]=0.0.0.0/0) Primary remote gateway: 101.101.101.1, State: Standby Backup remote gateway: 14.14.14.4, State: Active Failover counter: 1 Direction: inbound, SPI: 3743521590, AUX-SPI: 0 Mode: tunnel, Type: dynamic, State: Installed Protocol: ESP, Authentication: hmac-sha1-96, Encryption: 3des-cbc Soft lifetime: Expires in 23043 seconds Hard lifetime: Expires in 23178 seconds Anti-replay service: Enabled, Replay window size: 64 Direction: outbound, SPI: 2551045240, AUX-SPI: 0 Mode: tunnel, Type: dynamic, State: Installed Protocol: ESP, Authentication: hmac-sha1-96, Encryption: 3des-cbc Soft lifetime: Expires in 23043 seconds Hard lifetime: Expires in 23178 seconds Anti-replay service: Enabled, Replay window size: 64