Troubleshooting HP-UX IPSec

Troubleshooting Utilities Overview

Getting General Information

Table 5-1

Getting General Information

 

 

 

Task

 

Command

 

 

Get status of HP-UX IPSec

ipsec_admin -status

components.

 

 

 

 

Show all active and

ipsec_report -all

configured IPSec policies,

 

IKE policies, cache entries,

 

SAs, active IP interfaces,

 

bypass interfaces, and

 

display current audit file.

 

 

 

 

Getting SA Information

Table 5-2

Getting SA Information

 

 

 

Task

 

Command

 

 

Show current ISAKMP

ipsec_report -mad

(Main Mode) SAs.

 

 

 

 

Show current IPSec SAs.

ipsec_report -sad

 

 

 

Getting Policy Information

Table 5-3

Getting Policy Information

 

 

 

 

Task

Command

 

 

Determine which IPSec

ipsec_policy

policy matches a packet.

 

 

 

Show host IPSec policies in

ipsec_config show host

the configuration database.

 

 

 

Show active host IPSec

ipsec_report -host

policies.

 

ipsec_report -host [active]

 

 

 

156

Chapter 5