Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

 

Noprint
Panel
borderColorgreen
bgColortransparent
borderWidth2

Back to Table of Contents

Back to CLI Configure Mode

Back to Address Context - CLI

Back to IPSec Security - CLI

Use this command to delete IKE or IPsec Security Associations (SAs).

Command Syntax

Code Block
languagenone
% request addressContext <addressContext_name> ipsec 
   ikeSaDelete saIndex <SA index>
   ikeSaDeleteAll
   ipsecSaDelete localSPI

Command Parameters

Caption
0Table
1IPsec/IKE SA Delete Parameters
3IPsec IPSec SA Delete Parameters

Parameter

Length/Range

Description

ikeSaDelete <SA_index>

N/A

Enter SA index to delete a specific IKE SA and its IPSEC IPsec SAs.

ikeSaDeleteAllN/A

Use this parameter to delete ALL IKE and IPSEC IPsec SAs.

  • For IKEv1, this is an ungraceful delete message (peer is not notified).
  • For IKEv2, a tear-down message is sent to the peer.

ipsecSaDelete localSPI <local_SPI>
N/A

Enter local SPI to delete the IPsec SA pair (local_SPI: incoming Security Parameter Index value).

...