From c8757e3ebf315e28f0c9aaad53ad73ed7454b0f8 Mon Sep 17 00:00:00 2001 From: Darkstar-agent Date: Tue, 1 Sep 2020 21:27:33 +0300 Subject: [PATCH] ongoing additions, changes, and fixes --- Fortigate-debug-diagnose-complete-cheat-sheet.adoc | 13 +++++++++++++ 1 file changed, 13 insertions(+) diff --git a/Fortigate-debug-diagnose-complete-cheat-sheet.adoc b/Fortigate-debug-diagnose-complete-cheat-sheet.adoc index f0d4ea0..2597b81 100644 --- a/Fortigate-debug-diagnose-complete-cheat-sheet.adoc +++ b/Fortigate-debug-diagnose-complete-cheat-sheet.adoc @@ -21,8 +21,21 @@ NOTE: To enable debug set by any of the commands below, you need to run *diagnos |*diagnose vpn ike gateway flush name * |Flush (delete) all SAs of the given VPN peer only. +|*get vpn ipsec tunnel details* +| Get detailed info about the tunnels: Rx/Tx packets/bytes, IP addresses of the peers, algorithms used, detailed selectors info, lifetime. |*get vpn ipsec stats tunnel* | Show short general statistics about tunnels: number, kind, number of selectors, state +|*get vpn ipsec tunnel summary* +| Short statistics per each tunnel: number of selectors up/down, number of packets Rx/Tx. + + +|*get vpn ipsec stats crypto* +| Show statistics of the crypto component (ASIC/software) of the Fortigate: encryption algorithm, hasshing algorithm. + + + + + |===