180

Enhancements to IPsec/VPN

Release Note

show ipsec policy counter

Syntax SHow IPSec POLIcy[=name] COUnter

Figure 57: Modified output for the show ipsec policy counter command.

.

 

 

 

 

 

.

 

 

 

 

 

.

 

 

 

 

 

Inbound Packet Processing Counters:

 

 

inDeny

 

0

inPermit

0

 

inCompUncompressed

 

0

inActionIpsecFail

0

 

inBundleStateBad

 

0

inNotFirstSaInBundle

0

 

inProcessStart

 

4373

inProcessFailImm

0

 

inProcessFail

 

0

inProcessDone

4373

 

inEndOfBundle

 

0

inPrematureEndBundle

0

 

inBundleSaMatchFail

0

inPolicyActionFail

0

 

inPolSelectMatchFail

0

inBundleReplaced

0

 

inBundleSoftExpire

 

0

inBundleExpire

0

 

inBadDecryptedPkt

 

0

inBadSpiResponse

0

 

 

 

 

Table 48: Modified parameters from the show ipsec policy counter command

 

 

 

 

 

 

 

Parameter

Meaning

 

 

 

 

 

 

inBadSpiResponse

The number of bad SPI requests generated. These occur

 

when an IPsec policy has the parameter respondbadspi set

 

to true and packets processed by that policy have an

 

unknown SPI value.

 

 

 

 

 

 

 

 

Software Version 2.8.1 C613-10477-00 REV B

Page 180
Image 180
Allied Telesis AT-9900 Show ipsec policy counter, InBadSpiResponse, To true and packets processed by that policy have an