01-02-2013 10:45 AM
Hi Everyone
Site A
Device A has VPN Tunnel to
Site B Device B over Wan link.
Note Here Device A and B are end device and connect to ISP and do the encryption
Site A Device X which is internal device has simple GRE tunnel to Site Bs internal device.
My question is how can i find that this GRE tunnel gets encrypted at Device A or not?
Currently encryption is only at Device A and B
Thanks
Mahesh
Solved! Go to Solution.
01-02-2013 01:28 PM
Hi Ali,
If you can please let me know how can i do the packet capture on 4503?
Thanks
Mahesh
01-03-2013 09:16 AM
01-04-2013 06:29 AM
Mohammad is right - use a SPAN port and connect a sniffer.
In regards to the output of show crypto ipsec sa, you will only see traffic sourced by and destined to your IPSec endpoints, not individual traffic that is encrypted. As I mentioned above, that output would be only useful if you have a window during which you know that you should be expecting enough traffic from those endpoints that you could watch the counters on the IPSec connection and know if they were incrementing or not.
01-04-2013 07:54 AM
Hi Adam,
Many thanks for answering all my qustions.
Best regards
MAhesh
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide