
Configure Microsoft® Windows XP** Virtual Private Network (VPN) client interoperability with NAT-T support 21
Troubleshooting an IPSec tunnel
If problems continue, then ISAKMP and IPSec debugging modes may be used. Turning on all debug
modes is rather verbose, so we recommend basic ISAKMP debugging initially. Capture the following
debugging:
ena isakmp debug=state
• You can also use the command:
ena isakmp debug=trace
• Attempt connection from your IPSec remote PC client
• To end your debugging trace use the command:
dis isakmp debug=all
If the basic ISAKMP debugging modes does not reveal a problem to you, then all debugging modes
should be enabled and captured to a text file and sent to your support centre. Use the commands
• ena ipsec poli=tunnel debug=all
• ena isakmp debug
Also capture sh log to show ISAKMP log entries (as mentioned above), capture sh fire event
and sh debug. Forward all this debugging to your local technical support for analysis. Your local
support centre also have access to advanced support centres if necessary. Allied Telesyn offers
technical assistance in partnership with our authorised distributors and resellers. For technical
assistance, please contact the authorised distributor or reseller in your area. Please refer to
http://www.alliedtelesyn.com for a list of Allied Telesyn’s authorised distributors & resellers.
Komentáře k této Příručce