6-144
Cisco Broadband Cable Command Reference Guide
OL-1581-07
Chapter 6 Cable CPE Commands
show crypto engine accelerator sa-database
004 001(deleted) DES SHA
012 001(deleted) DES SHA
016 001(deleted) DES SHA
017 004(deleted) DES SHA
018 002(deleted) DES SHA
019 009(deleted) DES SHA
DH Summary
Index Group Config
007 001 Shared Secret
Router#
Table 6-20
describes the fields shown in the display for this command.
Table 6-20 show crypto engine accelerator sa-database Field Descriptions
Field
Description
Flow Summary
Index
Unique identifier for the flow.
Algorithms
The Flow Algorithm field displays the transformation set for each SA:
Mode
•
tunnel—Original IP packet is encrypted and encapsulated.
•
transport—Only the data portion of the IP packet is encrypted and
encapsulated.
Direction
•
inbound—Encryption is performed on incoming packets.
•
outbound—Encryption is performed on outgoing packets.
Encapsulating Security Protocol (ESP) Transform
•
esp-des—56-bit DES encryption.
•
esp-3des—168-bit 3DES encryption.
•
esp-null—No encryption algorithm (used only for test).
ESP Authentication Transform
•
esp-md5-hmac—MD5 (HMAC variant).
•
esp-sha-hmac—SHA (HMAC variant).
Authentication Header (AH) Transform
•
ah-md5-hmac—MD5 (HMAC variant).
•
ah-sha-hmac—SHA (HMAC variant).
SA Summary
Index
Unique identifier for the SA.
DH-Index
Unique identifier for the Diffie-Hellman group used in this SA. If the
connection is not currently active, the text “(deleted)” follows the index
number.