SA information cannot be checked after IPSec is configured on the AR

After IPSec is configured and the display ipsec sa command is used, SA information cannot be checked. To rectify the fault, perform the following operations:
1. Perform the ping operation to check connectivity of the public network.
2. If the IPSec tunnel is established through IKE negotiation, run the display ike sa command to check whether the IKE SA is established successfully.
3. Wait for about 10s and then check the SA.
4. Run the display interface brief command to check whether the interface bound to the IPSec policy is in Up state.
5. Check whether IPSec is configured correctly.

Scroll to top