VPN Trace Options

Last Updated : Dec 16, 2020 |

This tab provides trace options for monitoring the systems Virtual Private Network (VPN) connections.

These options should only be used under the guidance of an authorized Avaya development engineer.

IPSec Events

Option

Description

IPSec Events

Log primary events when bringing up and tearing down IPSec tunnels. It also indicates when packets are being discarded, and so on.

Decode

Log the decrypted IKE packets.

IPO-SNet

Not currently used.

Data Events

Log when packets are encrypted into and out of tunnel. It does not display the actual packet contents, they can be logged using the Interface tab options Interface Packets In and Interface Packets Out.

Warnings

Log information relating to faults in the IPSec processing.

Debug

Log special engineering trace information.

IPSec Packets

Option

Description

Rx Data

Log the content of received ESP encrypted packets before decryption.

Tx Data

Log the content of sent ESP encrypted packets after encryption.

L2TP Events

  • L2TP Events: If selected, this option logs the establishment of the L2TP tunnel (the stage underneath the PPP). You really need to include the appropriate PPP tracing additionally to this to see the complete picture.

L2TP Packets

  • Rx Data: Currently not used.

  • Tx Data: Currently not used.

Security Engine

  • Events

  • Measurements

  • Stack Trace

  • Regs on H/W Cmd Init

  • Regs on H/W Cmd Done

  • Regs on H/W Cmd Error

SSL VPN

  • Configuration

  • Session

  • Session State

  • Fsm

  • Socks

  • SocksState

  • Heartbeat

  • Keepalive

  • SignalingPktRx

  • SignalingPkTx

  • DataPktRx

  • DataPktTx

  • TunnelInterface

  • TunnelRoutes

Default Settings

The following trace options are enabled by default. See Defaulting the Trace Options.

  • Security Engine: Regs on H/W Cmd Error. SSL VPN: Session and Session State.