Linux – Tcpdump within an ipsec vpn packet
sudo tcpdump -i eth0 -E 3des-cbc:l6h7s4vavpn icmp
this command will let you see all packets coming within the ipsec vpn tunnel of a
network interface
/sbin/iptables –L
this command lists your firewall active rules
tcpdump –i eth0
this command will let you see all packets coming into or out of a network interface,
works on ipsec interfaces as well. Many filter options available
tail –n x /var/log/messages
will display the last x lines of the system log.
ipsec auto –status
This command to get status report from running system. Displays Pluto’s state.
It Includes the list of connections which are currently “added” to Pluto’s internal database;
lists state objects reflecting ISAKMP and IPsec SAs being negotiated or installed.
ipsec look
This command provides brief ipsec status information
ipsec barf
This command provides copious amounts of debugging info for ipsec.
netstat –rn
This command displays your current routing table (in memory)
netstat –an
This command displays your current active ports and their state. Ie: If your firewall is listening on a
certain port or connected on a certain port