Monitoring the IPsec Transport Interface Used to Secure GRE Tunnels

Purpose

Display information about a GRE tunnel or a list of GRE tunnels.

If the tunnel is protected by IPsec, the show gre tunnel detail command includes a line indicating the IPsec transport interface. The line is not shown for unsecured tunnels.

Action

To display information about a GRE tunnel:

host1#show gre tunnel detail
Tunnel operational configuration
  Tunnel name is 'vr1
  Tunnel mtu is '10240'
  Tunnel source address is '10.0.0.2'
  Tunnel destination address is '10.0.0.1'
  Tunnel transport virtual router is vr1
  Tunnel mdt is disabled
  Tunnel checksum option is disabled
  Tunnel up/down trap is enabled
  Tunnel server location is 4/0
  Tunnel administrative state is up
Statistics    packets              octets               discards   errors
  Data rx     0                    0                    0          0
  Data tx     0                    0                    0          0
Tunnel operational configuration
  Tunnel name is 'default'
  Tunnel mtu is '10240'
  Tunnel source address is '10.0.0.1'
  Tunnel destination address is '10.0.0.2'
  Tunnel transport virtual router is default
  Tunnel checksum option is disabled
  Tunnel up/down trap is enabled
  Tunnel server location is 4/0
  Tunnel secured by ipsec transport interface 1
  Tunnel administrative state is up
Statistics    packets              octets               discards   errors
  Data rx     0                    0                    0          0
  Data tx     0                    0                    0          0
Tunnel operational configuration
  Tunnel name is 'london2'
  Tunnel mtu is '10240'
  Tunnel source address is '0.0.0.0'
  Tunnel destination address is '0.0.0.0'
  Tunnel transport virtual router is vr1
  Tunnel checksum option is disabled
  Tunnel up/down trap is enabled
  Tunnel server location is 4/0
  Tunnel administrative state is up
Statistics    packets              octets               discards   errors
  Data rx     0                    0                    0          0
  Data tx     0                    0                    0          0
3 GRE tunnels found
3 tunnels were created static

Meaning

Table 41 lists the output fields for the show gre tunnel detail command.

Table 41: showgre tunnel detail Output Fields

Field Name

Field Description

Tunnel name

Name of the tunnel

Tunnel mtu

Value of the maximum transmission unit for the tunnel

Tunnel source address

IP address of the source of the tunnel

Tunnel destination address

IP address of the destination of the tunnel

Tunnel transport virtual router

Name of the virtual router associated with the tunnel

Tunnel mdt

State of the multicast distribution tree for the tunnel: enabled or disabled

Tunnel checksum option

State of the checksum feature: enabled or disabled

Tunnel up/down trap

Indicates whether or not the E Series router sends traps to SNMP when the operational state of the tunnel changes: enabled or disabled

Tunnel server location

Location of the tunnel server in slot/port format (ERX7xx models, ERX14xx models, and the ERX310 router) or slot/adapter/port format (E120 and E320 routers)

Tunnel secured by ipsec transport interface

IPsec interface that secures the tunnel

Tunnel administrative state

Configured state of the tunnel: up or down

Statistics

Details of packets received or transmitted by the tunnel

packets

Number of packets received or transmitted by the tunnel

octets

Number of octets received or transmitted by the tunnel

discards

Number of packets not accepted by the tunnel

errors

Number of packets with errors received or transmitted by the tunnel

Data rx

Received data

Data tx

Transmitted data

Number of tunnels found

Total number of GRE tunnels found

Number of static tunnels

Number of tunnels created statically

Related Documentation