Troubleshooting IPsec Site-to-Site VPNs in Cisco IOS

When you implement a new VPN, there may be a problem or two. So, let’s walk through the verification of the tunnel, and if we discover it not working, I will show you some of my favorite commands to assist in the troubleshooting process.

Let’s first of all verify our configuration so that we can confirm that what we have running on the router is what we configured, starting with Example 7-4.

Example 7-4 Verifying the IPsec Configuration

! This verifies the IKEv1 Phase 1 policy or policies in place.   The lower! the number of the policy, the higher its priority.R1# show crypto isakmp policyGlobal IKEv1 policyProtection suite of priority 1        encryption algorithm:   AES ...

Get Santos:CCNA Sec 210-260 OCG now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.