Phase 1

Each phase 1 Security Association is identified by a tunnel ID, a number with a prefix of K. To manually refresh a phase 1 Security Association, issue the ipsec -k display command to find the tunnel ID. Then issue the ipsec -k refresh command for that ID as follows:

ipsec -k refresh -a K1 

CS V1R12 ipsec  Stack Name: TCPCS  Tue Feb 16 11:48:04 2010
Primary:  IKE tunnel      Function: Refresh                
                                                           
Tunnel ID    Status                                        
K1           Refreshing

For detailed information about the use of the ipsec command, see z/OS Communications Server: IP System Administrator's Commands.