Knowledge Base

How to check if there is traffic in the IPSec VPN tunnel on VPN2S

Question

How to check if traffic in the IPSec VPN tunnel on VPN2S?

Answer

Scenario :

Sometimes after IPSec VPN tunnel build up, however the client under device cannot ping each other. On device VPN2S, there is no GUI to check the traffic in the tunnel. What can we do to check if there is traffic passing through IPSec VPN tunnel on VPN2S ?

 

Step :

Collect the packet on web gui

Go to Maintenance> Diagnostic >Packet Capture > Select the interface > Click Start Capture to collect packet

 

Do the test :Client under device ping each other then click stop capture.

 

 

Save the packets

 

Use SSH to check

Type command: capture interface , and do the test, then press “Ctrl+C” to stop capture the packet

 

 

Verification :

After collect the packet on web gui, open it and check and type esp to find if there is esp packet in the file.

If there is esp in the packet, it means the traffic can pass through VPN tunnel.

 

After collect packet by command line

If there is esp in the packet, it means the traffic can pass through VPN tunnel.

 

What can go wrong?

 

  1. If you do not know what is the interface name is, you can type command: show sys interface to check what is your interface name

 

 

 



YES NO

Please leave your comment:

SUBMIT

Question Profile

LANGUAGE:
ARTICLE ID:018063
TYPE:General Info
FIRMWARE:V1.20(ABLN.1)
VIEWS:54
VOTES:0
TECHNOLOGY:
MODEL:VPN2S

Still have trouble with your device? Contact Zyxel technology support team directly!

Contact Zyxel Support