Cisco ASA Notes

From Federal Burro of Information
Revision as of 19:44, 13 November 2012 by David (talk | contribs)
Jump to navigationJump to search

Is my vpn up?

Phase 1:

show crypto isakmp sa

Phase 2:

show crypto ipsec sa peer X.X.X.X

Is phase 2 up?

asa#  show crypto ipsec sa | inc <far end net>
asa#


reset the sa:

clear crypto isakmp sa client-fw
clear crypto ipsec sa clientfw


show crypto isakmp sa peer client-fw
show crypto ipsec sa peer client-fw

troubleshooting vpn :

http://www.cisco.com/en/US/products/ps6120/products_tech_note09186a00807e0aca.shtml
http://www.cisco.com/en/US/products/ps6120/products_tech_note09186a00807e0aca.shtml#solution05