[USG6000V2]display ike sa verbose remote 202.100.1.17
Ike sa verbose information :
------------------------------------------------
Ike Sa phase : 2
Establish Time : 2020-06-04 16:25:42
PortCfg Index : 0x7
IKE Peer Name : ike3616258621
Connection Id : 16777397
Version : v1
Flow VPN :
Peer VPN :
------------------------------------------------
Intiator Cookie : 0xa69b873a87d304fe
Responder Cookie : 0x6ad37be0793cdf52
Local Address : 101.100.1.21
Remote Address : 202.100.1.17
Encryption Algorithm : AES-256
Authentication Algorithm: SHA2-256
Authentication Method : Pre-Shared key
Flags : RD|A
------------------------------------------------
------------------------------------------------
Ike Sa phase : 1
Establish Time : 2020-06-04 16:26:18
PortCfg Index : 0x7
IKE Peer Name : ike3616258621
Connection Id : 16777398
Version : v1
Flow VPN :
Peer VPN :
------------------------------------------------
Intiator Cookie : 0x43b73db0767a82c2
Responder Cookie : 0xe33f075c5823d1c9
Local Address : 101.100.1.21
Remote Address : 202.100.1.17
Encryption Algorithm : AES-256
Authentication Algorithm: SHA2-256
Authentication Method : Pre-Shared key
Remaining Duration : 85575
Reference Counter : 0
Flags : RD|A
------------------------------------------------
Number of SA entries : 2
Number of SA entries of all cpu : 2
Flag Description:
RD--READY ST--STAYALIVE RL--REPLACED FD--FADING TO--TIMEOUT
HRT--HEARTBEAT LKG--LAST KNOWN GOOD SEQ NO. BCK--BACKED UP
M--ACTIVE S--STANDBY A--ALONE NEG--NEGOTIATING
[USG6000V2]
[USG6000V2]display ipsec sa remote 202.100.1.17
ipsec sa information:
===============================
Interface: GigabitEthernet1/0/1
===============================
-----------------------------
IPSec policy name: "ipsec3616258986"
Sequence number : 1
Acl group : 3000
Acl rule : 5
Mode : ISAKMP
-----------------------------
Connection ID : 16777397
Encapsulation mode: Tunnel
Tunnel local : 101.100.1.21
Tunnel remote : 202.100.1.17
Flow source : 192.168.21.0/255.255.255.0 0/0
Flow destination : 192.168.17.0/255.255.255.0 0/0
[Outbound ESP SAs]
SPI: 2953729319 (0xb00e5527)
Proposal: ESP-ENCRYPT-AES-256 SHA2-256-128
SA remaining key duration (kilobytes/sec): 0/42297
Max sent sequence-number: 896
UDP encapsulation used for NAT traversal: N
SA encrypted packets (number/kilobytes): 895/52
[Inbound ESP SAs]
SPI: 1891792370 (0x70c275f2)
Proposal: ESP-ENCRYPT-AES-256 SHA2-256-128
SA remaining key duration (kilobytes/sec): 0/42297
Max received sequence-number: 899
UDP encapsulation used for NAT traversal: N
SA decrypted packets (number/kilobytes): 898/52
Anti-replay : Enable
Anti-replay window size: 1024
[USG6000V2]