How to trace ipsec debug log on FLEX H series

Zyxel_Kevin
Zyxel_Kevin Posts: 913  Zyxel Employee
Zyxel Certified Network Administrator - Security Zyxel Certified Sales Associate 100 Answers 500 Comments

Question:

How to trace ipsec debug log on FLEX H series

Answer:

Please log in ssh and perform "cmd debug ipsec trace log" and please provide the output message for Zyxel Support for further checking.

For example:

700H> cmd debug ipsec trace log 

Oct  8 15:23:31 10[CFG] loaded 0 entries for attr plugin configuration

Oct  8 15:23:31 10[CFG] loaded 1 RADIUS server configuration

Oct  8 15:23:31 10[IKE] zyxel hack set interval in 10s

Oct  8 15:23:31 10[IKE] zyxel hack set ike_timeout in 60s

Oct  8 15:23:31 10[IKE] zyxel hack set nailup_timeout in 30s

Oct  8 15:23:39 16[IKE] <VPN_Flex500|2> retransmit 5 of request with message ID 0

Oct  8 15:23:39 16[ZSP] <VPN_Flex500|2> dpd_fail

Oct  8 15:23:39 16[NET] <VPN_Flex500|2> sending packet: from 10.214.48.17[500] to 10.214.48.67[500] (384 bytes)

Oct  8 15:23:53 11[CFG] vici initiate CHILD_SA 'sec_policy1_VPN_Flex500'