cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
187
Views
3
Helpful
4
Replies

router crypto syslog messages

hi,

how can I increase number/detailes of crypto syslog messaeges logged? For example I'd like to see when rekeying was done, if there was any errors in ikev2/ipsec negotiations etc. 

br

4 Replies 4

debug crypto ikev2 error <<- check this instead of run debug real time for all ikev2

MHM

I do not have that command ...

#sh crypto ikev2 ?
authorization Author policy
certificate-cache Show certificates in ikev2 certificate-cache
client Show Client Status
cluster Show Cluster load
diagnose Shows ikev2 diagnostic
policy Show policies
profile Shows ikev2 profiles
proposal Show proposals
sa Shows ikev2 SAs
session Shows ikev2 active session
stats Shows ikev2 sa stats

 

I can see some stats but no per peer

balaji.bandi
Hall of Fame
Hall of Fame

what is the device model and what IOS code running on the device.

Depends on log size the router can hold the message, if you looking get more logs - then setup temporary SYSLOG server - (there lot available in the google search) - then enable debug and direct the logs to syslog server and you can monitor.

https://www.cisco.com/c/en/us/td/docs/routers/access/wireless/software/guide/SysMsgLogging.html

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

hi,

 

asr 1001x 17.6.6a ... I just hoped there is solution without debug.

Review Cisco Networking for a $25 gift card