Netgear FVS318N – Prosafe Wireless N VPN Firewall 전단
Show Commands
300
ProSafe Wireless-N 8-Port Gigabit VPN Firewall FVS318N
show vpn ipsec vpnpolicy setup
This command displays the IPSec VPN policies:
Status Name Type IPSec Mode Local
Remote Auth Encr
_______ _________________ ___________ ___________ ______________________________________ ______________________________ _____ ____
Enabled FVS318N-to-Peer44 Auto Policy Tunnel Mode 2002:408b:36e4:a:a8ab:bbff:fe00:1 / 64 fe80::a4bb:ffdd:fe01:2 / 64 SHA-1 3DES
Enabled FVS-to-Paris Auto Policy Tunnel Mode 192.168.1.0 / 255.255.255.0 192.168.50.0 / 255.255.255.255 SHA-1 3DES
show vpn ipsec vpnpolicy status
This command displays status information about the active and nonactive IPSec VPN
policies (this example does not relate to the previous two examples):
policies (this example does not relate to the previous two examples):
Row Id Policy Name Endpoint tx ( KB ) tx ( Packets ) State Action
______ _______________ ______________________________ _________ ______________ ________________________ _______
1 GW1-to-GW2 10.144.28.226 0.00 0 IPsec SA Not Established Connect
2 FVS-to-IPv6Peer 2001::da21:1316:df17:dfee:e33c 0.00 0 IPsec SA Not Established Connect
3 100.10.10.1 100.153.46.20 7.01 31 IPsec SA Established Drop
4 100.10.10.2 100.153.46.20 6.68 29 IPsec SA Established Drop
show vpn ipsec mode_config setup
This command displays the Mode Config records:
List of Mode Config Records
___________________________
Record Name Pool Start IP Pool End IP
___________ ___________________ ___________________
Beijing 192.168.2.100 192.168.2.150
iphone 10.100.100.1
100.10.100.12
show vpn ipsec logs
This command displays the IPSec VPN logs (the following example shows only part of the
command output):
command output):
Tue Apr 10 12:24:36 2012 (GMT -0700): [FVS318N] [IKE] INFO: Using IPsec SA
configuration: anonymous
Tue Apr 10 12:24:36 2012 (GMT -0700): [FVS318N] [IKE] INFO: Re-using previously
generated policy: 100.10.10.2/32[0] 0.0.0.0/0[0] proto=any dir=in
Tue Apr 10 12:24:36 2012 (GMT -0700): [FVS318N] [IKE] WARNING: less key length
proposed, mine:128 peer:256. Use initiaotr's one.
Tue Apr 10 12:24:36 2012 (GMT -0700): [FVS318N] [IKE] INFO: IPsec-SA
established: ESP/Tunnel 173.11.109.158->64.139.54.228 with spi=
73255174(0x45dc906)
Tue Apr 10 12:24:36 2012 (GMT -0700): [FVS318N] [IKE] INFO: IPsec-SA
established: ESP/Tunnel 64.139.54.228->173.11.109.158 with spi=
7343706(0x700e5a)