cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
3933
Views
5
Helpful
4
Replies

how to see asa vpn S2S traffic?

baselzind
Level 6
Level 6

i have a asa 5515 v 9.1 , i have a S2S vpn IKEv1 and IKEv2 which i need to check packets going through it and what packets getting dropped through it , how can i do that? i cant seem to get anything through asdm real-time log viewer?

4 Replies 4

Hi,

From the CLI use the command "show crypto ipsec sa" and confirm the encaps and decaps counters are increasing to confirm traffic is being sent/received over the VPN tunnel successfully. You can also use packet capture to confirm traffic is sent/received.


Do you have an ACL or VPN Filter that could be blocking traffic over the tunnel? If so enable logging and view the output

 

HTH

no i want to see the actual incoming and outgoing packets and the ports not just the counters , i tried real time logging but it wont show the vpn traffic

Ok, do you have logging enabled? Post your configuration.
Review Cisco Networking products for a $25 gift card