Phase 1
Each phase 1 Security Association is identified by a tunnel ID, a number with a prefix of K. To manually refresh a phase 1 Security Association, issue the ipsec -k display command to find the tunnel ID. Then issue the ipsec -k refresh command for that ID as follows:
ipsec -k refresh -a K1
CS V1R12 ipsec Stack Name: TCPCS Tue Feb 16 11:48:04 2010
Primary: IKE tunnel Function: Refresh
Tunnel ID Status
K1 Refreshing
For detailed information about the use of the ipsec command, see z/OS Communications Server: IP System Administrator's Commands.