Networking > Services > VPN > IPSec > Services

get ipsecvpn sad <uuid-string-arg>

Display IPSec SA present in Security Association Database(datapath).

Parameters:

Option Description
<uuid> Generic UUID string argument
Allowed pattern: ^([0-9a-fA-F]{8}-[0-9a-fA-F]{4}-[0-9a-fA-F]{4}-[0-9a-fA-F]{4}-[0-9a-fA-F]{12})$


Example:

nsx-edge-1> get ipsecvpn sad 00003400-0000-0402-0000-040300000000 Total Number of IPSec SAs: 2 Inbound SAs: Rule ID : 2147484675 Policy UUID : 00003400-0000-0800-0000-080b00000000 VRF ID : 1 SPI : 0xf835f82a Created Timestamp : 2018-03-19 10:24:21 SA Uptime : 496 sec SA Lifetime : 3600 sec NAT-Traversal : False ESN : False DF Policy : clear SA Hit : 1 Sequence Number (Recv) : 1234 Anti-Replay Window Size : 960 TCP MSS Value : 1350 Traffic Mode : Tunnel Protocol : ESP IP Address: Source : 1.1.5.100 Destination : 192.168.128.1 Subnets: Source : 2.2.5.0/24 Destination : 192.168.100.0/24 Algorithm: Encryption : aes-128-cbc Authentication : sha256-hmac Multi-Path : Disabled ---------------------------------------- Outbound SAs: Rule ID : 1027 Policy UUID : 00003400-0000-0800-0000-080b00000000 VRF ID : 1 SPI : 0xc3f194fa Created Timestamp : 2018-03-19 10:24:21 SA Uptime : 496 sec SA Lifetime : 3600 sec NAT-Traversal : False ESN : False DF Policy : clear SA Hit : 1 Sequence Number (Sent) : 1234 Anti-Replay Window Size : 960 TCP MSS Value : 1350 Traffic Mode : Tunnel Protocol : ESP IP Address: Source : 192.168.128.1 Destination : 1.1.5.100 Subnets: Source : 192.168.100.0/24 Destination : 2.2.5.0/24 Algorithm: Encryption : aes-128-cbc Authentication : sha256-hmac Multi-Path : Disabled ----------------------------------------

Mode:

Basic

Availability: