cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
415
Views
5
Helpful
2
Replies

ASA S2S VPN Troubleshooting Query

georgehewittuk1
Level 1
Level 1

Hi Guys,

 

Is there a command/debug/capture for the ASA whereby I can see the decapsulated packets from a site to site VPN. Usually I just capture on the interface it egresses but not getting any hits like it should.

 

Would be good to see what is sent as trying to prove what is being sent from a remote party.

 

Thanks

George

 

2 Replies 2

balaji.bandi
Hall of Fame
Hall of Fame

Pawan Raut
Level 4
Level 4

use the command "show crypto ipsec sa <PeerIP>" to confirm if you are receiving the decap packets in VPN tunnel

then apply the packet capture on the inside interface of Cisco VPN ASA from which the packet will leave for a destination

 

Please rate for useful post

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: