Verify the Easy VPN Server
Configuration
Figure shows how to verify your Easy VPN
Server configuration. Once you create the Easy VPN Server
configuration, you can run a test to confirm the correct tunnel
configuration: Step 1 From the Easy VPN Server
window of the SDM wizard, click the Edit Easy VPN
Server tab. Step 2 Choose the Easy VPN server
configuration that you want to verify. Step 3 Click the
Test VPN Server button to run the test. The VPN
Troubleshooting window shown in Figure appears. Start the test
by clicking Start in the VPN Troubleshooting
window. The status of each tested activity should be
“Successful.” If the test is not successful, retrace your steps
and correct the error. Monitoring Easy VPN Server
Figure shows how to reach the screen you use to monitor the
Easy VPN Server. The monitoring page displays the status of the
tunnel and the currently logged-in users. Step 1 Select
the Monitor icon in the toolbar at the top of the
window. Step 2 Click the VPN Status icon in the
Tasks toolbar at the left side of the window. Step
3 Click the Easy VPN Server tab. Step 4
Choose a group name to monitor in the Select a Group
section. Step 5 Verify the client connections in the
Client Connections in this Group section. Testing
and Monitoring
Use the useful show commands to
determine the status of IPsec VPN connections.
Troubleshooting
Connect a terminal to the Cisco IOS
router if you want to use debugging commands to troubleshoot
VPN connectivity. The debug crypto isakmp command
displays detailed information about the IKE Phase 1 and Phase 2
negotiation processes. To display messages about IKE events,
use the debug crypto isakmp command in EXEC mode. Figure
shows the command syntax. To debug the authentication and
authorization of Easy VPN tunnels, you can use the commands
listed in the debug Commands table.