# Task: IPsec — v3.7.2

**Version:** 3.7.2
**Category:** security
**Description:** IKE configuration and IPsec tunnels state
**New in this version:** No
**IPv6 Support:** No
**URL:** https://feature-matrix-imenovsky01a.user.ipf.cx/3.7.2/task/88537377

---

## Vendor Support Matrix

| Vendor / Family | Status | IPv6 | Notes |
|-----------------|--------|------|-------|
| cisco@ios | ✓ | — |  |
| cisco@ios-xe | ✓ | — |  |
| cisco@nx-os | ✗ | — |  |
| cisco@ios-xr | ✗ | — |  |
| cisco@asa | ✓ | — |  |
| cisco@wlc-air | ○ | — |  |
| cisco@sg | ○ | — |  |
| cisco@ftd | ✗ | — |  |
| cisco@aci | ○ | — |  |
| cisco@meraki | ✗ | — |  |
| dell@ftos | ○ | — |  |
| dell@powerconnect | ○ | — |  |
| hp@comware | ✗ | — |  |
| hp@aruba | ○ | — |  |
| hp@arubasw | ○ | — |  |
| riverbed@steelhead | ○ | — |  |
| fortinet@fortigate | ✓ | — |  |
| paloalto | ✓ | — |  |
| juniper@junos | ✓ | — |  |
| checkpoint@gaia | ✗ | — |  |
| extreme@boss | ○ | — |  |
| extreme@enterasys | ○ | — |  |
| extreme@voss | ○ | — |  |
| extreme@xos | ○ | — |  |
| arista@eos | ○ | — |  |
| f5@big-ip | ○ | — |  |
| huawei@vrp | ✗ | — |  |
| mikrotik@routeros | ✓ | — |  |
| quagga | ○ | — |  |
| frr | ○ | — |  |

---

## CLI Commands

| Vendor / Family | Command | Notes |
|-----------------|---------|-------|
| mikrotik@routeros | `/ip ipsec profile print detail` |  |
| paloalto | `show vpn ipsecSa` |  |
| paloalto | `show vpn tunnel` |  |
| paloalto | `show interface <name>` |  |
| mikrotik@routeros | `/ip ipsec peer print detail` |  |
| mikrotik@routeros | `/ip ipsec active-peer print detail` |  |
| mikrotik@routeros | `/ip ipsec policy print detail` |  |
| mikrotik@routeros | `/ip ipsec identity print detail` |  |
| mikrotik@routeros | `/ip ipsec installed-sa print detail` |  |
| paloalto | `show vpn ikeSa` |  |
| mikrotik@routeros | `/ip ipsec proposal print detail` |  |
| mikrotik@routeros | `/ip address print detail` |  |
| fortinet@fortigate | `get system status` |  |
| fortinet@fortigate | `diagnose vpn ike gateway list` |  |
| fortinet@fortigate | `diagnose vpn tunnel list` |  |
| fortinet@fortigate | `show vpn ipsec phase1` |  |
| fortinet@fortigate | `show vpn ipsec phase1-interface` |  |
| cisco@asa | `show crypto isakmp sa detail` |  |
| cisco@ios | `show crypto ikev2 sa detailed` |  |
| cisco@ios | `show crypto ipsec sa` |  |
| cisco@ios | `show interfaces` |  |
| cisco@ios-xe | `show crypto isakmp sa detail` |  |
| cisco@ios-xe | `show crypto ikev2 sa detailed` |  |
| cisco@ios-xe | `show crypto ipsec sa` |  |
| cisco@ios-xe | `show interfaces` |  |
| cisco@ios-xe | `show run \| inc qos queue-stats-frame-count` | "show run | inc qos queue-stats-frame-count" for selected IOS-XE platforms (cat3k/cat9k) |
| cisco@ios | `show crypto isakmp sa detail` |  |
| cisco@asa | `show crypto ipsec sa` |  |
| cisco@asa | `show interfaces detail` |  |
| juniper@junos | `show security ike security-associations detail` |  |
| juniper@junos | `show security ipsec security-associations detail` |  |
| juniper@junos | `show configuration \| display set \| except "^deactivate"` |  |
| paloalto | `show vpn flow` |  |
| paloalto | `show vpn gateway` |  |

---

## Legend

- **✓** = Fully Integrated
- **✗** = Not Yet Integrated
- **○** = Not Available

*Generated: 2026-04-16T20:22:09.209Z*
