clear ikev2 sa

Clears Internet Key Exchange version 2 security associations (IKEv2 SAs).
Syntax
clear ikev2 sa [ fvrf vrf-name | ipv4 | local ip-address | remote ip-address ]
Parameters
fvrf vrf-name
Specifies the front-door VRF (FVRF) for the SAs.
ipv4
Specifies clearing IPv4 connections.
local ip-address
Specifies the local IPv4 address for the SAs.
remote ip-address
Specifies the remote IPv4 address for the SAs.
Modes

Privileged EXEC mode

Usage Guidelines

The clearing process deletes and re-establishes the SAs (including any child SAs).

When optional parameters are not specified, the command clears all IKEv2 SAs on the device.

Note: Clearing all IKEv2 SAs is a costly operation. Therefore, the unqualified version of the command should be used with caution. Issuing multiple unqualified versions of the command within a short time frame is not recommended.
Examples

The following example clears the IKEv2 SAs for local interface 10.10.20.1.

device# clear ikev2 sa local 10.10.20.1

The following example clears the IKE SAs for remote interface 10.0.10.1.

device# clear ikev2 sa remote 10.0.10.1
History
Release version Command history
08.0.50 This command was introduced.