Cisco AIM-VPN - DES/3DES VPN Data Encryption AIM Module Manual del usuario - Página 16
Navegue en línea o descargue pdf Manual del usuario para Hardware de red Cisco AIM-VPN - DES/3DES VPN Data Encryption AIM Module. Cisco AIM-VPN - DES/3DES VPN Data Encryption AIM Module 23 páginas. Vpn encryption module (aim-vpn/epii, aim-vpn/hpii, aim-vpn/bpii family)
show crypto engine accelerator statistic
Table 4
show crypto engine accelerator statistic Compression Statistics Descriptions for a Cisco 2600, Cisco 3600 or
Cisco 3700 VPN module
Count Label
bytes before decrypt
bytes after encrypt
Kbits/sec decrypted
Kbits/sec encrypted
rx_no_endp
rx_hi_discards
fw_failure
invalie_sa
invalid_flow
cgx_errors
fw_qs_filled
fw_resource_lock
lotx_full_err
null_ip_error
pad_size_error
out_bound_dh_acc
esp_auth_fail
ah_auth_failure
crypto_pad_error
ah_prot_absent
ah_seq_failure
ah_spi_failure
esp_prot_absent
Cisco IOS Release 12.3(7)T
16
DES/3DES/AES VPN Encryption Module (AIM-VPN/EPII, AIM-VPN/HPII, AIM-VPN/BPII Family)
Significance
Total number of bytes in packets to be decrypted including encryption
headers/trailers.
Total number of bytes in encrypted packets including encryption
headers/trailers.
Kilobits per second of payload bytes decrypted.
Kilobits per second of payload bytes encrypted.
Not used in Cisco 2600/3600 VPN.
Number of packets discarded by the VPN Module. This can happen if a
callback value is set, the output interface is NULL, or a packet has been
received when the VPN Module is disabled.
—
—
Packet received for encryption decryption using an IPsec key that is invalid,
for example, a session has expired or key is out of range.
Not used in Cisco 2600/3600 VPN.
Not used in Cisco 2600/3600 VPN.
Flow was deleted by IPSEC while VPN Module was processing the packet,
or packet has a NULL Local Address, or packet does not have room for
encapsulation headers
Not used in Cisco 2600/3600 VPN.
Not used in Cisco 2600/3600 VPN.
Unable to remove pad bytes in packet.
An out-of-bounds DH index was encountered during processing of the
packet.
Digest in an ESP Encapsulated packet is incorrect.
Digest in an AH Encapsulated packet is incorrect.
Encryption coprocessor found a padding error.
The SPI in the ESP header of a packet does not match the SPI in the packet's
flow.
The AH sequence check failed.
The sequence number in the AH Header does not match the packets flow.
—
Associated Error
Number
—
—
—
—
—
1400 encryption
not ready
4097 fatal firmware
error
4165 invalid sa
4098 bad flow
—
4103 queue full
4104 resource
swamp
4354 null ip
—
4612 pad size error
4161 bad dh index
4609 ESP
authentication fail
4610 AH
authentication fail
4611 crypto pad
error
4615 AH protocol
absent
4612 AH Sequence
fail
4613 AH SPI fail
4617 ESP protocol
absent