Cisco ASR 1000 Series Common Criteria Operational User Guidance And Preparative Procedures page 48

Aggregation services router
Hide thumbs Also See for ASR 1000 Series:
Table of Contents

Advertisement

Requirement
Auditable
Events
Additional Audit
Record Contents
Jun 20 07:42:26.843: ISAKMP:(0):Old State =
IKE_R_MM2 New State = IKE_R_MM3
Jun 20 07:42:26.843: ISAKMP:(0): processing KE
payload. message ID = 0
Jun 20 07:42:27.055: ISAKMP:(0): processing
NONCE payload. message ID = 0
Jun 20 07:42:27.059: ISAKMP:(0):found peer pre-
shared key matching 100.1.1.5
.Jun 19 21:09:49.619: IPSEC(delete_sa): deleting
SA,
(sa) sa_dest= 100.1.1.5, sa_proto= 50,
sa_spi= 0x3C81B171(1015132529),
sa_trans= esp-aes esp-sha-hmac ,
62
sa_lifetime(k/sec)= (4608000/28800),
(identity) local= 100.1.1.1:0, remote= 100.1.1.5:0,
local_proxy= 10.1.1.0/255.255.255.0/256/0,
remote_proxy= 12.1.1.0/255.255.255.0/256/0
Jun 19 21:10:37.575: ISAKMP:(2034):purging node -
506111676
.Jun 19 21:10:39.615:
ISAKMP:(2034):purging node -22679511
.Jun 20 04:46:14.789:
IPSEC(lifetime_expiry): SA lifetime threshold
reached, expiring in 1412 seconds
Jun 19 11:12:33.905: %CRYPTO-5-
IKMP_AG_MODE_DISABLED: Unable to initiate
or respond to Aggressive Mode while disabled
Configuration of IPsec:
1/3
1/1
1/3
0/1
Sample Record
Termination of IPSEC session (outbound-
initiated)
Failure of an established IPSEC session
(outbound-initiated)
8:2
6:3
Inf
Jan 30 18:56:50 10.104.49.55 Time set to Jan
3
2
o
18:56:50, from server 10.104.49.22.
11:
No
131: *Jan 30 2013 05:20:15: %PARSER-5-
04:
tic
CFGLOG_LOGGEDCMD: User:console logged
3
42
e
command:logging trap 7
sa_conn_id=
Page 48 of 72

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents