Command Reference Guide Enable Mode Command Set
61200510L1-35E Copyright © 2005 ADTRAN 101

debug crypto [ike | ike negotiation | ike client authentication |

ike client configuration | ipsec | pki]

Use the debug crypto command to activate debug messages associ ated with IKE and IPSec functions.
Debug messages are displayed (real time) to the terminal (or Telnet) screen. Use the no form of this
command to disable the debug messages.
Syntax Description
ike Displays all IKE debug messages.
ike negotiation Displays only IKE key management debug messages (e.g., handshaking).
ike client aut h en t ic at io n Displays IKE client authentication messages as they occur.
ike client configuration Displays mode-config exchanges as they take place over the IKE SA. It is
enabled independently from the ike negotiation debug described
previously.
ipsec Displays all IPSec debug messages.
pki Displays all public key infrastructure (PKI) debug messages.
Default Values
By default, all debug messages in the AOS are disabled.
Applicable Platforms
This command applies to the NetVanta 300, 1000R, 2000, 3000, 4000, and 5000 and Total Access 900
Series units.
Command History
Release 4.1 Command was introduced.
Release 6.1 Debug pki command introd uced.
Usage Examples
The following example activates the IPSec debug messages:
>enable
#debug crypto ipsec