Troubleshooting HP-UX IPSec

Troubleshooting Procedures

 

ipsec_report -audit audit_file

 

Filtering Audit File Output by Entity

 

You can filter the audit file output so ipsec_report shows only entries

 

recorded by specified entities.

 

ipsec_report -audit audit_file -entity entity_name

 

[entity_name ...]

 

where entity_name is one of the following names:

 

ikmpd

 

ipsec_admin

 

ipsec_config

 

ipsec_mgr

 

ipsec_policy

 

ipsec_report

 

secauditd

 

secpolicyd

 

 

TIP

When troubleshooting problems with establishing SAs, set the audit

 

level to informative. If you know which policy HP-UX IPSec is using,

 

you can specify -entity ikmpd when displaying the audit file contents

 

to view only the IKE audit entries.

 

 

Chapter 5

167