Networking > Services > VPN > IPSec > Services

get ipsecvpn sad logical-router <uuid-string-arg>

Display IPSec SA present in Security Association Database(datapath).

Parameters:

Option Description
<uuid> Generic UUID string argument
Allowed pattern: ^([0-9a-fA-F]{8}-[0-9a-fA-F]{4}-[0-9a-fA-F]{4}-[0-9a-fA-F]{4}-[0-9a-fA-F]{12})$


Example:

nsx-edge-1> get ipsecvpn sad logical-router d88806dc-0a12-41a5-ab18-fce703027b35 Total Number of IPSec SAs: 2 Inbound SAs: Rule ID : 2147484675 Policy UUID : 00003400-0000-0800-0000-080b00000000 VRF ID : 2 SPI : 0x7bbde976 Created Timestamp : 2019-03-19 16:16:12 SA Uptime : 37 sec SA Lifetime : 3600 sec NAT-Traversal : False ESN : False DF Policy : clear SA Hit : 0 Sequence Number (Recv) : 0 Anti-Replay Window Size : 960 TCP MSS Value : 0 Traffic Mode : Tunnel Protocol : ESP IP Address: Source : 1.1.5.100 Destination : 192.168.128.1 Subnets: Source : 2.2.5.0/24 Destination : 192.168.100.0/24 Algorithm: Encryption : aes-128-cbc Authentication : sha256-hmac Multi-Path : Enabled Path Index 0 : Seq Num (1) Path Index 1 : Seq Num (10) Path Index 2 : Seq Num (21) Path Index 3 : Seq Num (20) Path Index 4 : Seq Num (40) Path Index 5 : Seq Num (6) Path Index 6 : Seq Num (0) Path Index 7 : Seq Num (0) ---------------------------------------- Outbound SAs: Rule ID : 1027 Policy UUID : 00003400-0000-0800-0000-080b00000000 VRF ID : 2 SPI : 0xc9813c88 Created Timestamp : 2019-03-19 16:16:12 SA Uptime : 37 sec SA Lifetime : 3600 sec NAT-Traversal : False ESN : False DF Policy : clear SA Hit : 0 Sequence Number (Sent) : 0 Anti-Replay Window Size : 960 TCP MSS Value : 0 Traffic Mode : Tunnel Protocol : ESP IP Address: Source : 192.168.128.1 Destination : 1.1.5.100 Subnets: Source : 192.168.100.0/24 Destination : 2.2.5.0/24 Algorithm: Encryption : aes-128-cbc Authentication : sha256-hmac Multi-Path : Enabled Default Path : 4500->4500 (Seq Num : 0) ----------------------------------------

Mode:

Basic

Availability: