12-11-2007 07:45 AM - edited 02-21-2020 01:49 AM
Folks,
I have an ASA and would like to see why my ipsec tunnel is not coming up.
I enable logging. and then type in "debug crypto isakmp", but see nothing, in old pix could, it was so easy to troubleshoot but with 7.x code is there a good command to see debug output?
12-11-2007 11:31 AM
Hi Navin
try
debug crypto isakmp 50
Also using syslogs is really useful. You know ASDM has one built-in. Set the loggig level to notifications
Regards
10-16-2018 06:19 AM
12-11-2007 11:37 AM
if doing the debug from telnet session you need to enable terminal monitor, try this.
ciscoasa#terminal monitor
then use your debug , to disable it issue terminal no monitor
HTH
Jorge
12-14-2007 12:34 PM
Quick trick, since debug can run away on you making it hard to enter commands. do this enter the NO version of the command first then enter the command like.
no debug crypto isa
debug crypto isa
that way if it takes off all you do is hit up arrow once and return to end the command.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide