Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

 
 

show security ike peers

Syntax

Description

Display information about IKE peer such as the backoff peers, blocked peers, failed peers, and the in progress peers.

Options

backoff

Display the IKE backoff peers.

Display details of the remote peers (initiators) that are temporarily denied permission to start a new IKE negotiation due to the previous SA_INIT or IKE_AUTH phase failures.

blocked

Display the IKE blocked peers.

Display the latest 100 IKE blocked negotiations. The blocked negotiations are due to the blocklist configuration at the [edit security ike peer blocklist] hierarchy level.

failed

Display the IKE failed peers.

Display the latest 200 IKE negotiation failed peers.

in-progress

Display the IKE in progress peers.

blocklist-name blocklist-name

(Optional) Provide the IKE blocklist name. Applicable with blocked option.

brief

(Optional) Display brief output

detail

(Optional) Display detailed output.

index value

(Optional) Enter the index number.

role value

(Optional) Enter initiator or responder.

gateway-name value

(Optional) Enter the IKE gateway name.

local-ip-address value

(Optional) Enter the local IP address.

remote-ip-address value

(Optional) Enter the remote IP address.

Required Privilege Level

View

Output Fields

The Table 1 lists the output fields of the show security ike peers in-progress brief command. You'll see similar output with backoff, blocked, and failed options. The Table 2 lists the output fields for the show security ike peers in-progress detail command. You'll see similar output with backoff, blocked, and failed options.

Table 1: show security ike peers in-progress brief Output Fields

Field Name

Field Description

Index Index number
Started at IKE negotiation process start time.
IKE peer Remote IKE peer IP address.
Gateway name IKE gateway name of the remote peer.
Role The initiator or the responder role.
Table 2: show security ike peers in-progress detail Output Fields

Field Name

Field Description

Index Index number
Role The initiator or the responder role.
Exchange Type Negotiation mode—either IKEv2 or Main or Aggressive
Authentication Method Certificates or Pre-shared-keys based authentication
Remote port Remote port number
Local Address Local IP address
Local Port Local port number
Negotiation Phase INIT
Routing Instance default
Gateway name IKE gateway name of the remote peer.
NATT Detection Not Detected or Detected at remote end
Started at IKE negotiation process start time.

Sample Output

show security ike peers in-progress brief

show security ike peers in-progress detail

Release Information

Command introduced in Junos OS Release 23.4R1