cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1575
Views
10
Helpful
4
Replies

Debug for IPSEC tunnel not dispaying anything

CiscoBrownBelt
Level 6
Level 6

So I set the following:

 

debug crypto condition peer  10.10.10.1

 

debug crypto ikev2 protocol 127
debug crypto ikev2 platform 127

 

However no debugs are displayed on the CLI for IPSEC tunnel negotiations. All configs for tunnel look good as it was working not too long ago. 

4 Replies 4

Hi,
Is interesting traffic being generated in order to establish the tunnel? Without that there would be no debugs.

HTH

No it is not. I have to wait on something to do that. So I guess the tunnel traffic or negotiation will only come up if interesting traffic is being generated?

If using a crypto map (which I assume you are) then yes, interesting traffic needs to be generated in order for the tunnel to be established and therefore generate debug logs.

If you were using a VTI, then the tunnel would attempt to establish straight away and stay up without the requirement for interesting traffic.

HTH

Yes, I am using a Crypto map. I will get back to you. Thanks!
Review Cisco Networking for a $25 gift card