How do I know what isakmp policy is in use?

If you have a fully established (phase 1 and 2) VPN, y at - it a show command that allows you to see what isakmp policy is selected for this tunnel?

Perhaps you would like to try to use "debug crypto isakmp" to see the negotiation of phase 1, if you have the option to disconnect and reestablish the tunnel.

hope this helps

http://www.Cisco.com/en/us/docs/iOS/12_3t/debug/command/reference/dbg_c3gt.html#wp1114438

Tags: Cisco Security

Similar Questions

  • How does Card Crypto knows what ISAKMP policy to use?

     ip access-list extended ACL_SITE1_TO_SITE2 permit ip 10.0.12.0 0.0.0.255 10.0.22.0 0.0.0.255 ! crypto isakmp policy 10 encr aes hash sha256 authentication pre-share group 14 crypto isakmp policy 20 encr aes 256 hash sha512 authentication pre-share group 16 crypto isakmp key cisco123 address 200.0.2.2 ! crypto ipsec transform-set [TRANS_SET]PHASE_2 esp-aes esp-sha256-hmac mode tunnel ! crypto map [CRYPT_MAP]VPN_SITE1_TO_SITE2 11 ipsec-isakmp set peer 200.0.2.2 set transform-set [TRANS_SET]PHASE_2 match address ACL_SITE1_TO_SITE2 ! interface FastEthernet0/0 ip address 200.0.1.1 255.255.255.0 crypto map [CRYPT_MAP]VPN_SITE1_TO_SITE2

    How does Card Crypto knows what ISAKMP policy to use, or use of the ISAKMP policy at all?

    It comes from "ipsec-isakmp?

    I mean... I do not see any "set isakmp policy 10" in the Crypto map

    This is what he chooses just the top-down approach?

    As part of the negotiation of the phase 1 and is a top-down proposal based on the sequence number.  You can get the details in tunnel using configuration:

    Debug crypto ISAKMP

    Cisco IOS has built/strategies default ISAKMP, but the pre 15.x versions were terrible default.  New default values are strong, although I still like to configure them myself.

  • How can I know what sounds or symbol is used?

    Hello. Two related questions:

    -Is it possible to click on something in my project - a symbol or an audio clip, I already placed in the library - and know what element of the particular library is?

    -Can I play acoustics of the library window, to preview before you place them?

    Thank you!

    -Is it possible to click on something in my project - a symbol or an audio clip, I already placed in the library - and know what element of the particular library is?

    Yes, right click and click on "view in the library.

    -Can I play acoustics of the library window, to preview before you place them?

    Yes, click on your sound library, then in the window of your library panel preview will be a play/pause button

  • How do I know what type of hardcore is used?

    Hi all
    I'm a newbie dba. I was doing a bit of study on the optimizers. Can someone help me to find out what type of optimizer based on CSSTidy is currently used in my database. Is there both table where I can ask questions and whether it is a RBO or a CBO.
    I have another doubt. some body help me please with the difference between the use of "in" and "exist" in a select query.
    Thank you!

    OPTIMIZER_MODE is a level parameter Instance (in initSID.ora or spfileSID.ora file) that you can view with an OPTIMIZER PARAMETER SHOW
    (or by querying V$ PARAMETER).

    Individual sessions can also define specific settings that influence the optimizer with ALTER SESSION command while the SQL statements can include advice (from a large number of tips available) that influence the optimizer.

    IN and EXISTS are semi-join operations. If you use one or the other used depends on which table would be the best driver. However, apparently since the 9i, the optimizer is smart enough to transform queries.

  • How can I know what Google update plugin to use?

    I recently installed Firefox 3.6. He said that I might need to install a new update to Google in order to keep my computer running fast. I clicked on the link 'search' which has led to several Web sites to choose from. I have the Windows 7 operating system. My Google plugin is version 1.2.183.39. I'm not having any problems with it. Should I update? If Yes, which version should I use and where find it?

    There is no need to update this plugin. This is the update that installs and updates of software in the Google Pack. For more details on this topic, see http://www.google.com/support/pack/bin/answer.py?hl=en & answer = 30252

  • How can I know what ram slot ram in there on my G4 imac

    OK so I have an imac G4 1 GHz version and I don't have any tools to open it to see what ram slots are empty for a ram upgrade how can I know what ram slot is free and opening the mac

    There is a user accessible memory slot. You can install a maximum of 2GBs. The memory of the plant is pre-installed.

  • IPhone 6 - How will I know what apps are underway in the background?

    IPhone 6 - How will I know what apps are underway in the background?

    On multitasking on your iPhone, iPad and iPod touch - Apple Support

    Scroll to the bottom where he treats background App update!

    You can visit these settings under settings > general > background App update.

  • How do I know what version (update / output level) version 6 has been applied to my system?

    Question
    How do I know what version (update / output level) version 6 has been applied to my system? I applied several different publication levels to version 6 of FF, but all about feature tells me is Version 6.0. No version! This seems to be a change in the updates in the way which are managed. What is a distortion because of the speed in which you push updates and what's new?
    contact me if you need something more

    e-mail address removed

    For those who are in need of a photo/screenshot, see attachment below. Right click on the image below, choose "Open in New Tab", click on the image to open in the new tab to zoom in and enlarge the image.

    If this answer solved your problem, please click 'Solved It' next to this response when connected to the forum.

  • Should I delete the programs of 2004? How can you know what is safe to delete?

    Original title: remove programs

    I think I have a virus.  I see on my computer a few applications with and installed as of 2004.  The computer was purchased in 2007.  When I run it in safe mode, it works fine and all applications have a date of 2007 or newer.  Should I delete the programs of 2004? How can you know what is safe to delete?

    Hello

    This is not an indication of malware. Could be those are placed on the
    computer by the manufacturer of the system and that was the date that firstly, they prepared their
    for massive installation, or if they did not set a date and be used arbitrarily.

    =============================================================

    If you need search malware here's my recommendations - they will allow you to
    scrutiny and the withdrawal without ending up with a load of spyware programs running
    resident who can cause as many questions as the malware and may be more difficult to detect as the
    cause.

    No one program cannot be used to detect and remove any malware. Added that often easy
    to detect malicious software often comes with a much harder to detect and remove the payload. Then
    its best to be thorough than paying the high price later now too. Check with them to one
    extreme overkill point and then run the cleaning only when you are sure that the system is clean.

    It can be made repeatedly in Mode safe - F8 tap that you start, however, you must also run
    the regular windows when you can.

    TDSSKiller.exe. - Download the desktop - so go ahead and right-click on it - RUN AS ADMIN
    It will display all the infections in the report after you run - if it will not run changed the name of
    TDSSKiller.exe to tdsskiller.com. If she finds something or not does not mean that you should not
    check with the other methods below.
    http://support.Kaspersky.com/viruses/solutions?QID=208280684

    Download malwarebytes and scan with it, run MRT and add Prevx to be sure that he is gone.
    (If Rootkits run UnHackMe)

    Download - SAVE - go to where you put it-right on - click RUN AS ADMIN

    Malwarebytes - free
    http://www.Malwarebytes.org/

    Run the malware removal tool from Microsoft

    Start - type in the search box-> find MRT top - right on - click RUN AS ADMIN.

    You should get this tool and its updates via Windows updates - if necessary, you can
    Download it here.

    Download - SAVE - go to where you put it-right on - click RUN AS ADMIN
    (Then run MRT as shown above.)

    Microsoft Malicious - 32-bit removal tool
    http://www.Microsoft.com/downloads/details.aspx?FamilyId=AD724AE0-E72D-4F54-9AB3-75B8EB148356&displaylang=en

    Microsoft Malicious removal tool - 64 bit
    http://www.Microsoft.com/downloads/details.aspx?FamilyId=585D2BDE-367F-495e-94E7-6349F4EFFC74&displaylang=en

    also install Prevx to be sure that it is all gone.

    Download - SAVE - go to where you put it-right on - click RUN AS ADMIN

    Prevx - Home - free - small, fast, exceptional CLOUD protection, working with others
    security programs. It is a single scanner, VERY EFFICIENT, if it finds something to come back
    here or use Google to see how to remove.
    http://www.prevx.com/   <-->
    http://info.prevx.com/downloadcsi.asp  <-->

    Choice of PCmag editor - Prevx-
    http://www.PCMag.com/Article2/0, 2817,2346862,00.asp

    Try the demo version of Hitman Pro:

    Hitman Pro is a second scanner reviews, designed to save your computer from malicious software
    (viruses, Trojans, rootkits, etc.). who infected your computer despite safe
    what you have done (such as antivirus, firewall, etc.).
    http://www.SurfRight.nl/en/hitmanpro

    --------------------------------------------------------

    If necessary here are some free online scanners to help the

    http://www.eset.com/onlinescan/

    New Vista and Windows 7 version
    http://OneCare.live.com/site/en-us/Center/whatsnew.htm

    Original version
    http://OneCare.live.com/site/en-us/default.htm

    http://www.Kaspersky.com/virusscanner

    Other tests free online
    http://www.Google.com/search?hl=en&source=HP&q=antivirus+free+online+scan&AQ=f&OQ=&AQI=G1

    --------------------------------------------------------

    Also follow these steps for the General corruption of cleaning and repair/replace damaged/missing
    system files.

    Run DiskCleanup - start - all programs - Accessories - System Tools - Disk Cleanup

    Start - type this into the search-> find COMMAND to top box and RIGHT CLICK-
    RUN AS ADMIN

    Enter this at the command prompt - sfc/scannow

    How to analyze the log file entries that the Microsoft Windows Resource Checker
    (SFC.exe) program generates in Windows Vista cbs.log
    http://support.Microsoft.com/kb/928228

    Run checkdisk - schedule it to run at the next startup, then apply OK then restart your way.

    How to run the check disk at startup in Vista
    http://www.Vistax64.com/tutorials/67612-check-disk-Chkdsk.html

    -----------------------------------------------------------------------

    If we find Rootkits use this thread and other suggestions. (Run UnHackMe)

    http://social.answers.Microsoft.com/forums/en-us/InternetExplorer/thread/a8f665f0-C793-441A-a5b9-54b7e1e7a5a4/

    I hope this helps.

  • How will I know what security pack I have in my computer? and do I have to load the update of security in ms10-046

    I have recivied an email indicating that I need to load a security update. He referenced MS10-046 "a vulnerability in the windows shell could allow remote access" is this necessary? and it refers to the sp2. Which leads to my next question how can I know what "SP" I have on my computer. Thanks for your time and considerartion.

    go to start > run > type

    winver

    Click ok

    What service pack t - he say that contains?

  • How do I know what software is causing the error to Windows Installer: lack of program

    original title: How do I know what software is causing the error to Windows Installer

    Windows XP

    When you get this message that keeps popping up every two hours-

    The upgrade patch cannot be installed by the Windows Installer service because the program to be upgraded

    may be missing or the upgrade patch may update a different bersion of the program.   Make sure that the program

    to be upgraded exists on your computer and that you have the good patch upgrade. ."

    How do find you the application or software, or the program is causing the problem.  ?

    It is a simple solution.

    Go in run, type: msiexec /Unregister 'press the ok button.

    Back to run, enter: msiexec/regserver "press ok.

    Youre thru. Restart the pc

  • I have a 2002 Home edition WIndows Xp System. How will I know what bit is?

    How will I know what bit is?

    Because they do not have a 64-bit edition family... you have a 32-bit operating system.

    To see for yourself, make a right click workstation-> properties, on the general tab, you will see under "system":
    Microsoft Windows XP
    Home Edition
    Version 2002
    Service Pack 3

    For a 64-bit version "Windows XP Professional x 64 Edition" appears under System.

  • How do I know what motherboard is installed

    I have a HP h8 - 1070t.  How do I know what motherboard is installed?

    Should I update my BIOS I install more memory?

    Hello:

    Here is the link to the product for your model specifications page.

    http://support.HP.com/us-en/document/c02837359

    It bears the name of HP IPISB-CH2 Pegatron: motherboard of Chicago.

    Motherboard info is below to...

    http://support.HP.com/us-en/document/c02854392

    You should not have to update the BIOS in order to install more memory.

  • every time when I start it up and go to my office, a 2 x 3 box pops up for a split second, how do you know what he says?

    When I boot my laptop with Vista, loads and gets on the desk on either primary or a guest account, a small box about 2 x 3 "appears for only a fraction of a second, but I can see there is a red X on the top right corner and two clickable buttons, but I can't read what it says.  How will I know what it says; where can I go to find it.  There is nothing in sysconfig on startup, etc.

    You must have something in the system start, probably in one of the keys to registry Run, which is something you don't recognize to run at startup.

  • How do I know what type of prossesor my laptop is and what is the speed of the processor?

    How do I know what type of prossesor my laptop is and what is the speed of the processor?

    On the start menu, click computer , and then click System Properties.

Maybe you are looking for

  • I have pad 12,9 Pro camera

    12,9 pro IPad there front and rear, in front of the camera?

  • iPhone Sync with iCloud

    It's a LONG story how this happened but long story short, my iPhone and my iPad are not synchronized my computer with iCloud. I have two Photo files.  We're from iPhoto and the other Photos.  I wish they had not changed the cause of software now, it'

  • Pop - annoying ups

    I get annoying jump - comes up telling me my computer is in danger and click for scan. The message comes from Systweak.com. I've never been to their site Web is a kind of malware?

  • Initial size (MB) and maximum (MB) size should I use to add more RAM to my memory?

    I followed the instructions on a video on how to add more RAM to your computer without taking it apart. I followed all the steps up until I came to the part in the dialog 'virtual memory '.  Where it says, 'custom size' you have to put the ' initial

  • Power Vault Modular Disk Storage Manager

    Hello I'm not able to find versions of these utilities below, can someone help me where I can get these? (1) power Vault Modular Disk Storage Manager v 10.80.G6.47 (2) Dell software switch V 4.0.0.49 remote console