08-17-2017 09:18 AM - edited 03-12-2019 02:50 AM
Is there a clever way to audit an ASA to identify all our unused crypto maps associated with tunnels that have been removed or are no longer configured? I know it's relatively easy to find ones in use, but I need to filter down to just the ones that are unused.
08-17-2017 10:02 AM
Hi,
Yes, you can check the crypto ACL for any increment in hit counters.
Regards,
Aditya
Please rate helpful and mark correct answers
08-17-2017 11:21 AM
Can you be a little more specific? There's an incredible amount of them to check, if that matters.
08-17-2017 08:46 PM
Hi Nick,
Unfortunately, you have to check individual crypto access-list for the hits.
Apart from this option, I do not think there is any way to check for unused crypto maps.
Regards,
Aditya
Please rate helpful and mark correct answers
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide