Hoot and Holler over V3PN Configuration Example
Verify
18
OL-6573-01
•
show voice call summary
—Shows information about a call (such as the codec being used or the
state of the phone).
•
show class-map
—Displays the QoS marking scheme (such as voice traffic that is marked up). This
defines it as a V
3
PN implementation.
•
show policy-map interface atm 1/0 output
—Shows how traffic has been queued on the ATM
interface. Note that different queues have different packet counts because traffic is assigned on the
basis of differentiated services code point (DCSP) and IP precedence values.
•
show crypto engine brief
—Shows the VPN engine currently being run.
Representative output from each of these commands is presented in the verification summaries that
follow.
Note
Relevant display output is highlighted in
bold
text as appropriate.
The following is an output example for the
show crypto isakmp sa
command, performed using the
configuration on the Headquarters router:
HUB-R1#
show crypto isakmp sa
dst src state conn-id slot
10.32.152.26 10.32.153.34
QM_IDLE
29 0
10.32.152.26 10.32.150.46
QM_IDLE
31 0
The following is an output example for the
show crypto ipsec sa
command, performed using the
configuration on the Headquarters router:
HUB-R1#
show crypto ipsec sa
interface: Tunnel0
Crypto map tag: INT_CM, local addr. 10.32.152.26
protected vrf:
local ident (addr/mask/prot/port): (10.32.152.26/255.255.255.255/47/0)
remote ident (addr/mask/prot/port): (10.32.153.34/255.255.255.255/47/0)
current_peer: 10.32.153.34:500
PERMIT, flags={origin_is_acl,}
#pkts encaps: 174918, #pkts encrypt: 174918, #pkts digest: 174918
#pkts decaps: 126855, #pkts decrypt: 126855, #pkts verify: 126855
#pkts compressed: 0, #pkts decompressed: 0
#pkts not compressed: 0, #pkts compr. failed: 0
#pkts not decompressed: 0, #pkts decompress failed: 0
#send errors 66, #recv errors 0
local crypto endpt.: 10.32.152.26, remote crypto endpt.: 10.32.153.34
path mtu 1420, media mtu 1420
current outbound spi: 69111392
inbound esp sas:
spi: 0xD5823DEF(3582082543)
transform: esp-3des esp-sha-hmac ,
in use settings ={Tunnel, }
slot: 0, conn id: 5213, flow_id: 93, crypto map: INT_CM
crypto engine type: Hardware, engine_id: 2
sa timing: remaining key lifetime (k/sec): (508969241/10148)
ike_cookies: DE2C7D5A FB6197B3 795753FB 41D07F6D
IV size: 8 bytes
replay detection support: Y
inbound ah sas:
Содержание 2800 Series
Страница 64: ...22 Basic Software Configuration Using the Cisco IOS Command Line Interface OL 5593 01 Additional References ...
Страница 125: ...Easy VPN Configuration Example Configure 5 OL 6340 01 Private IP address pool 192 168 3 0 24 ...
Страница 138: ...Easy VPN Configuration Example Related Information 18 OL 6340 01 ...
Страница 140: ...Easy VPN Configuration Example Related Information 20 OL 6340 01 ...