cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
438
Views
0
Helpful
2
Replies

show crypto isakmp

opnineopnine
Level 1
Level 1

Hi all,

 

I have a pix 515e, and when I do "show crypto isakmp sa" I get the output of all the vpns, but I found one connection, that there is no tunnel-group or crypto map created, and I do a sh run 190.x.x.x and I dont see the IP in any part of my configuration.

Any ideas?

 

IKE Peer: 190.x.x.
 Type    : user            Role    : responder 
 Rekey   : no              State   : AM_ACTIVE 

 

Thanks.

1 Accepted Solution

Accepted Solutions

Marvin Rhoads
Hall of Fame
Hall of Fame

It's type "user" - not L2L (LAN to LAN or site-site).

A type "user" SA is someone coming in via remote access VPN and is not statically defined by his peer address in your configuration but is rather hitting a dynamic crypto map.

Try checking "show vpn session-db remote" for details on who it is.

View solution in original post

2 Replies 2

Marvin Rhoads
Hall of Fame
Hall of Fame

It's type "user" - not L2L (LAN to LAN or site-site).

A type "user" SA is someone coming in via remote access VPN and is not statically defined by his peer address in your configuration but is rather hitting a dynamic crypto map.

Try checking "show vpn session-db remote" for details on who it is.

Thanks I found it!!!!