Verify the Easy VPN Server Configuration
Figure shows how to verify your Easy VPN Server configuration. Once you create the Easy VPN Server configuration, you can run a test to confirm the correct tunnel configuration: Step 1 From the Easy VPN Server window of the SDM wizard, click the Edit Easy VPN Server tab. Step 2 Choose the Easy VPN server configuration that you want to verify. Step 3 Click the Test VPN Server button to run the test. The VPN Troubleshooting window shown in Figure appears. Start the test by clicking Start in the VPN Troubleshooting window. The status of each tested activity should be “Successful.” If the test is not successful, retrace your steps and correct the error. Monitoring Easy VPN Server
Figure shows how to reach the screen you use to monitor the Easy VPN Server. The monitoring page displays the status of the tunnel and the currently logged-in users. Step 1 Select the Monitor icon in the toolbar at the top of the window. Step 2 Click the VPN Status icon in the Tasks toolbar at the left side of the window. Step 3 Click the Easy VPN Server tab. Step 4 Choose a group name to monitor in the Select a Group section. Step 5 Verify the client connections in the Client Connections in this Group section. Testing and Monitoring
Use the useful show commands to determine the status of IPsec VPN connections. Troubleshooting
Connect a terminal to the Cisco IOS router if you want to use debugging commands to troubleshoot VPN connectivity. The debug crypto isakmp command displays detailed information about the IKE Phase 1 and Phase 2 negotiation processes. To display messages about IKE events, use the debug crypto isakmp command in EXEC mode. Figure shows the command syntax. To debug the authentication and authorization of Easy VPN tunnels, you can use the commands listed in the debug Commands table.