cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
578
Views
0
Helpful
2
Replies

Which packets go through the VPN tunnel

John Peterson
Level 1
Level 1

Guys,

I've just added a external server ip address to go through our vpn tunnel and then out the remote site internet connection.

How can I check that this is the path the packet is taking?

If I do a tracert then I can't see the path?

Thanks

2 Replies 2

cflory
Level 1
Level 1

Well, you could either monitor your logs on your VPN device (whatever that may be - not specified), as long as you have the appropriate logging level. 

For a traceroute, assuming there's a routing device on the other end of the tunnel you would traverse, you should be able to see the last hop on your end being your VPN device, and then the router or the destination host, as the next hop (and that would indicate you're 'in' the tunnel).

A third option, and more challenging, is having a packet sniffer that knows the PSK, or has the ability to decrypt the session, and analyze the traffic from Wireshark or another packet analysis tool.

HTH!

-Chris

Marvin Rhoads
Hall of Fame
Hall of Fame

You can use the packet tracer tool either from ASDM or cli to validate the flow through the ASA

Sent from Cisco Technical Support iPhone App