127
Traffic Flow Confidentiality enable—Whether Traffic Flow Confidentiality (TFC) padding is
enabled.
Inside VRF—VPN instance to which the protected data flow belongs.
The following values were added to the Perfect Forward Secrecy field:
dh-group19—256-bit ECP Diffie-Hellman group.
dh-group20—384-bit ECP Diffie-Hellman group.
Modified command: display ipsec transform-set
Syntax
display ipsec transform-set [ transform-set-name ]
Views
Any view
Change description
The following fields were added to the command output:
ESN—Whether Extended Sequence Number (ESN) is enabled.
PFS—Perfect Forward Secrecy (PFS) configuration.
Modified command: display ipsec tunnel
Syntax
display ipsec tunnel { brief | count | tunnel-id tunnel-id }
Views
Any view
Change description
The following values were added to the Perfect Forward Secrecy field of the command output:
dh-group19—256-bit ECP Diffie-Hellman group.
dh-group20—384-bit ECP Diffie-Hellman group.
Modified command: esp authentication-algorithm
Old syntax
In non-FIPS mode:
esp authentication-algorithm { md5 | sha1 | sm3 } *
undo esp authentication-algorithm
In FIPS mode: