show macsec secy

Use this command to display MACSec entity configuration and status for one or more MACSec-capable ports.

Syntax

show macsec secy {cipher-suite | config port-string | receive {sa | sc} port-string | stats port-string | transmit {sa | sc} port-string

Parameters

cipher-suite Specifies SECY cipher suite data to appear.
config Specifies SECY interface configuration information to appear.
receive Specifies SECY receive information to appear.
stats Specifies SECY statistics to appear.
transmit Specifies SECY transmit information to appear.
sa Specifies secure associations for the specified context to appear.
sc Specifies secure channel for the specified context to appear.
port-string (Optional) Port or range of ports.

Defaults

If a specific port or range of ports is not selected, information for all active ports appears.

Mode

All command modes.

Example

This example shows how to display SECY interface configuration for port "ge.1.10":

System(su)->show macsec secy config ge.1.10

Port: geC.1.10
Max Peer SCs:          1
Rx Max Keys:           4
Tx Max Keys:           4
Protect Frames:        enabled
Validate Frames:       strict
Replay Protect:        enabled
Replay Protect Window: 0 frames
Point-to-Point MAC
  admin:               auto
  oper:                true
SecTAG Transmit Options
  Include SCI:         enabled
  Use ES:              disabled
  Use SCB:             disabled