610
# (MSR1000/MSR2000/MSR3000.) Display the trusted IPv4 list for TCP client verification.
<Sysname> display client-verify tcp trusted ip
IP address VPN instance DS-Lite tunnel peer TTL(sec)
11.1.1.2 vpn1 -- 3600
123.123.123.123 a012345678901234567 1234:1234::1234:1234 3550
# (MSR4000.) Display the trusted IPv4 list for TCP client verification.
<Sysname> display client-verify tcp trusted ip
Slot 0:
IP address VPN instance DS-Lite tunnel peer TTL(sec)
11.1.1.2 vpn1 -- 3600
123.123.123.123 a012345678901234567 1234:1234::1234:1234 3550
Slot 1:
IP address VPN instance DS-Lite tunnel peer TTL(sec)
11.1.1.2 vpn1 -- 3600
# (MSR1000/MSR2000/MSR3000.) Display the number of trusted IPv4 addresses for TCP client
verification.
<Sysname> display client-verify tcp trusted ip count
Totally 3 trusted IP addresses.
# (MSR4000.) Display the number of trusted IPv4 addresses for TCP client verification.
<Sysname> display client-verify tcp trusted ip count
Slot 0:
Totally 3 trusted IP addresses.
Slot 1:
Totally 3 trusted IP addresses.
Table 97 Command output
Field Descri
tion
Totally 3 protected IP addresses Total number of trusted IPv4 addresses.
IP address Trusted IPv4 address.
VPN instance
MPLS L3VPN instance to which the trusted IPv4 address belongs. If the
trusted IPv4 address is on the public network, this field displays hyphens (--).
DS-Lite tunnel peer
Peer address of the DS-Lite tunnel.
If the device is the AFTR of a DS-Lite tunnel, this field displays the B4's
address from which the packet comes.
In other situations, this field displays hyphens (--).
TTL(sec)
Remaining aging time of the trusted IPv4 address, in seconds. If no aging
time is set, this field displays Never.
display client-verify trusted ipv6
Use display client-verify trusted ipv6 to display trusted IPv6 addresses for client verification.
Syntax
MSR1000/MSR2000/MSR3000:
display client-verify { dns | http | tcp } trusted ipv6 [ ipv6-address [ vpn vpn-instance-name ] ] [ count ]