Fortigate: Debug / Troubleshoot / Fehlersuche VPN

VPN Tunnel zurücksetzen: diag vpn tunnel reset <phase1 name> get vpn ike gateway <name> get vpn ipsec tunnel name <name> get vpn ipsec tunnel details diagnose vpn tunnel list diagnose vpn ipsec status           #shows all crypto devices with counters that are used by the VPN get router info routing–table all diagnose debug reset diagnose vpn ike log–filter clear diagnose vpn ike log–filter ? diagnose vpn ike log–filter dst–addr4 1.2.3.4 diagnose debug app ike 255          #shows phase 1 and phase 2 output diagnose debug enable               #after enough output, disable the debug: diagnose debug disable      

Fortigate: Routing Tabelle anzeigen / Show Routing table

FG-PH-Arnstadt # get router info routing-table all Codes: K – kernel, C – connected, S – static, R – RIP, B – BGP O – OSPF, IA – OSPF inter area N1 – OSPF NSSA external type 1, N2 – OSPF NSSA external type 2 E1 – OSPF external type 1, E2 – OSPF external type 2 i – IS-IS, L1 – IS-IS level-1, L2 – IS-IS level-2, ia – IS-IS inter area * – candidate default S* 0.0.0.0/0 [10/0] is directly connected, ERFURT C 10.200.100.0/24 is directly connected, lan4 S 185.9.108.0/22 [10/0] via 185.9.110.33, wan C 185.9.110.32/27 is directly connected, wan