156-215.81 · Question #674
You had setup the VPN Community NPN-Stores' with 3 gateways. There are some issues with one remote gateway(1.1.1.1) and an your local gateway. What will be the best log filter to see only the IKE…
The correct answer is A. action:"Key Install" AND 1.1.1.1 AND Quick Mode. This log filter will show only the logs that have the action of "Key Install", which means that the Security Gateway installed a new encryption key for the VPN tunnel. It will also show only the logs that have the IP address of 1.1.1.1, which is the remote gateway that has some…
Question
You had setup the VPN Community NPN-Stores' with 3 gateways. There are some issues with one remote gateway(1.1.1.1) and an your local gateway. What will be the best log filter to see only the IKE Phase 2 agreed networks for both gateways.
Options
- Aaction:"Key Install" AND 1.1.1.1 AND Quick Mode
- BBlade:"VPN"AND VPN-Stores AND Main Mode
- Caction:"Key Install" AND 1.1.1.1 AND Main Mode
- DBlade:"VPN"AND VPN-Stores AND Quick Mode
How the community answered
(19 responses)- A79% (15)
- B5% (1)
- C11% (2)
- D5% (1)
Explanation
This log filter will show only the logs that have the action of "Key Install", which means that the Security Gateway installed a new encryption key for the VPN tunnel. It will also show only the logs that have the IP address of 1.1.1.1, which is the remote gateway that has some issues. Finally, it will show only the logs that have the Quick Mode, which is the IKE Phase 2 negotiation that establishes the agreed networks for both gateways. The other log filters are not correct because they either include the Main Mode, which is the IKE Phase 1 negotiation that establishes the secure channel between the gateways, or they do not specify the IP address of the remote gateway.
Topics
Community Discussion
No community discussion yet for this question.