Cisco Systems checking VPN connection status?

Bookmark this page:  YahooMyWeb Yahoo!  Google Google  Windows Live Favorites Windows Live  del.icio.us del.icio.us  digg digg  Add to Netscape Netscape
Subject Author Date
checking VPN connection status? cisco 03-30-07
Posted by cisco on March 30, 2007, 1:23 pm
Please log in for more thread options
I have two PIX 506e's configured with a point-to-point VPN, which had been
working for some time, but is no longer working. Is there any way to check
the status of the connection using PDM or the command line?

How do I "restart" a VPN connection?

TIA




Posted by cisco on March 30, 2007, 1:27 pm
Please log in for more thread options
>I have two PIX 506e's configured with a point-to-point VPN, which had been
>working for some time, but is no longer working. Is there any way to check
>the status of the connection using PDM or the command line?
>
> How do I "restart" a VPN connection?

Sorry: Let me add a bit of information, drawn from the monitoring section of
PDM on Pix "aaa"

IKE SAs
sourceIP DestIP State
xxx.xxx.xxx.aaa xxx.xxx.xxx.bbb QM_IDLE


IPSec Details for xxx.xxx.xxx.aaa/255.255.255.0/0/0
192.168.0.0/255.255.255.0/0/0 at Fri Mar 30 12:25:07 EST 2007

local ident (addr/mask/prot/port): (xxx.xxx.xxx.aaa/255.255.255.0/0/0)
remote ident (addr/mask/prot/port): (192.168.0.0/255.255.255.0/0/0)
current_peer: xxx.xxx.xxx.bbb:0
PERMIT, flags=
#pkts encaps: 0, #pkts encrypt: 0, #pkts digest 0
#pkts decaps: 0, #pkts decrypt: 0, #pkts verify 0
#pkts compressed: 0, #pkts decompressed: 0
#pkts not compressed: 0, #pkts compr. failed: 0, #pkts decompress
failed: 0
#pkts no sa (send) 13, #pkts invalid sa (rcv) 0
#pkts encaps failed (send) 0, #pkts decaps failed (rcv) 0
#pkts invalid prot (recv) 0, #pkts verify failed: 0
#pkts invalid identity (recv) 0, #pkts invalid len (rcv) 0
#pkts replay rollover (send): 0, #pkts replay rollover (rcv) 0
##pkts replay failed (rcv): 0
#pkts internal err (send): 0, #pkts internal err (recv) 0
local crypto endpt.: xxx.xxx.xxx.aaa, remote crypto endpt.:
xxx.xxx.xxx.bbb
path mtu 1500, ipsec overhead 0, media mtu 1500
current outbound spi: 0
inbound esp sas:
inbound ah sas:
inbound pcp sas:
outbound esp sas:
outbound ah sas:
outbound pcp sas:



Similar ThreadsPosted
checking VPN connection status? March 30, 2007, 1:23 pm
Checking up on ISP January 9, 2007, 3:38 am
VPN Client Checking March 20, 2006, 12:36 am
Checking my first IPSEC config November 13, 2006, 12:54 pm
Cisco VPN client CRL checking April 24, 2007, 10:26 am
Cisco VPN client CRL checking April 24, 2007, 10:26 am
checking compatibility of configs on new IOS November 20, 2007, 9:51 pm
Checking DRAM slots on a 2610XM April 25, 2008, 12:49 am
Checking packet statistics on monitored session port October 9, 2008, 6:23 pm
Help with troubleshooting PPP status June 12, 2006, 10:24 pm
regarding autoneg and Rx and Tx status March 5, 2008, 6:35 pm
Status up Protocol up but can't ping!!! October 19, 2005, 10:00 am
inteface status question May 11, 2006, 3:24 pm
Status RSY/SEG (OPEN/THROTTLED) June 19, 2006, 5:57 am
Cisco VPN client gives the following status: Not Connected July 16, 2005, 7:50 am