NetScreen
[Top] [All Lists]

[nn] How to find out number of tunnels being in use?

To: nn@qorbit.net
Subject: [nn] How to find out number of tunnels being in use?
From: Marc Haber <mh+qorbit-nn@zugschlus.de>
Date: Wed, 31 Jan 2007 14:27:42 +0100
Delivered-to: sp-com-lists@consult.net
Delivered-to: ns-list2@consult.net
Delivered-to: nn@qorbit.net
List-archive: <http://www.qorbit.net/nn>
List-help: <mailto:nn-request@qorbit.net?subject=help>
List-id: "Netscreen mailing list for netscreen admins." <nn.qorbit.net>
List-post: <mailto:nn@qorbit.net>
List-subscribe: <http://qorbit.net/mailman/listinfo/nn>, <mailto:nn-request@qorbit.net?subject=subscribe>
List-unsubscribe: <http://qorbit.net/mailman/listinfo/nn>, <mailto:nn-request@qorbit.net?subject=unsubscribe>
Sender: nn-bounces@qorbit.net
User-agent: Mutt/1.5.9i
Hi,

I have NetScreen 5 GT running as a VPN gateway with the NSR VPN Client
on a bunch of Windows clients. We are on a PSK setup with all clients
running the same policy and the same PSK, and authenticating via
XAUTH.

Our ScreenOS license is limited to 10 tunnels. How do I find out how
many tunnels are in use at a given time? Does "get xauth active"
and/or "get sa active" give any hint for that number? Does the
NetScreen device log when the maximum number of tunnels is exceeded?
How does a NSR client behave when it tries to connect while NetScreen
device is rejecting the tunnel due to tunnel number exceeded? Does it
give a clear error message or does it "just not work"?

Any hints will be appreciated.

Greetings
Marc

-- 
-----------------------------------------------------------------------------
Marc Haber         | "I don't trust Computers. They | Mailadresse im Header
Mannheim, Germany  |  lose things."    Winona Ryder | Fon: *49 621 72739834
Nordisch by Nature |  How to make an American Quilt | Fax: *49 621 72739835
_______________________________________________
nn mailing list
nn@qorbit.net
http://qorbit.net/mailman/listinfo/nn

<Prev in Thread] Current Thread [Next in Thread>