cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
959
Views
4
Helpful
4
Replies

VPN Down Syslog Message

jwalker
Level 3
Level 3

Does anyone know the correct syslog messages that will let me know if my site-to-site VPN is down? Thanks.

4 Replies 4

jmia
Level 7
Level 7

Well don't have the exact syslog message BUT a quick way to find out if the tunnel is up or not is to issue:

sh isakmp sa - example below...

What you should be looking for is the state i.e. QM_IDLE anything apart from this will indicate a problem

with the tunnel setup.

dst src state pending created

QM_IDLE 0 1

The above is from a PIX.

Hope this helps and pls rate posts!!

I guess I should have specified.. This is a site-to-site VPN between a PIX 515E and an ASA 5520. The router commands don't really help. Any ideas on the ASA/PIX syslog message to look for downed VPN connections? Thanks.

unicmd
Level 1
Level 1

hmmm ...

there are some messages that could be usefull

but dont know if there are the right one :

http://www.cisco.com/univercd/cc/td/doc/product/multisec/asa_sw/v_70/syslog/saslapa.htm

else try to kill your site-to-site vpn and see that the log says :-)

Martin

DK