569ViewsSystem viewPredefined user rolesnetwork-adminParametersauth-failure: Specifies notifications about authentication failures.decrypt-failure: Specifies notifications about decryption failures.encrypt-failure: Specifies notifications about encryption failures.global: Specifies notifications globally.invalid-sa-failure: Specifies notifications about invalid-SA failures.no-sa-failure: Specifies notifications about SA-not-found failures.policy-add: Specifies notifications about events of adding IPsec policies.policy-attach: Specifies notifications about events of applying IPsec policies to interfaces.policy-delete: Specifies notifications about events of deleting IPsec policies.policy-detach: Specifies notifications about events of removing IPsec policies from interfaces.tunnel-start: Specifies notifications about events of creating IPsec tunnels.tunnel-stop: Specifies notifications about events of deleting IPsec tunnels.Usage guidelinesIf you do not specify any keywords, this command enables or disables all SNMP notifications forIPsec.To generate and output SNMP notifications for a specific IPsec failure type or event type, perform thefollowing tasks:1. Enable SNMP notifications for IPsec globally.2. Enable SNMP notifications for the failure type or event type.Examples# Enable SNMP notifications for IPsec globally. system-view[Sysname] snmp-agent trap enable ipsec global# Enable SNMP notifications for events of creating IPsec tunnels.[Sysname] snmp-agent trap enable ipsec tunnel-starttfc enableUse tfc enable to enable Traffic Flow Confidentiality (TFC) padding.Use undo tfc enable to disable the TFC padding feature.Syntaxtfc enableundo tfc enableDefaultTFC padding is disabled.