You will see an icon to the left of the connection name:
A key indicates that the connection has a Phase 2 IPSec SA, or both a Phase 1 and Phase 2 SA. When there is a single Phase 1 SA to a gateway that is protecting multiple Phase 2 SAs, there will be a single Phase 1 connection with the SA icon and individual Phase 2 connections with the key icon listed above that entry.
An SA indicates that the connection has only a Phase 1 IKE SA. This occurs when connecting to a secure gateway tunnel or when a Phase 2 IPSec SA fails to establish or has not been established yet.
A black mark moving beneath the key icon indicates that the client is processing secure IP traffic for that connection.
More about the Connection Monitor
Global Statistics are not
Dropped Packets includes packets from connections that are configured as blocked.
Remote Modifier is either the remote party subnet mask or the end of the address range when IP Address Range is selected for the Remote Party Identity and Addressing ID Type.
To view the details
To see the details about a connection, click Details. The Security
Association Details window appears as shown below.
Figure A-3. Connection
Monitor window
You will see a Phase 1 tab and/or a Phase 2 tab; these tabs indicate
TroubleshootingA-3