06-06-2003 05:33 AM - edited 03-09-2019 03:34 AM
Hello Guy,
i get a small prob.: on my Cisco 2600 Router Branch Office connect via VPN 3des to PIX 535. all thinks works fine but i cann see the Q-idle of this command: "sh cryp isa sa"
any reason why ?
thanks for yor suggession
BBZ#sh cry isa sa
dst src state conn-id slot
BBZ-FRANKFURT#
AF
06-06-2003 05:58 AM
Hi,
There is nothing to worry about. The QM_IDLE state simply says that your ISAKMP SA is up. The IPSec may or may not be established. The QM_IDLE is the last state in Phase-1 negotiations and states that an ISAKMP SA is created.
Cheers :-))
Naveen
10-27-2003 05:51 AM
Hello,
We are seeing the same and still doubt why sometimes the QM_IDLE status is not reported when typing the "show crypto isa sa" command. Potential IOS bug ? Anyone has got a clue ?
Thanks, Martijn
10-27-2003 07:57 AM
use the
'show crypto engine connections active' command
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide