Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
sims
New Contributor III

Tunnel is up ,Byte Received 0

Hi,

 

Ipsec tunnel is up , but shows byte received 0

please help (conf file atatched )

Thanks 

11 REPLIES 11
sims
New Contributor III

hi,

fw-01 (root) # fw-01 (root) # fw-01 (root) # diag debug enable fw-01 (root) # diag debug console timestamp enable fw-01 (root) # diag debug flow filter addr "Client Public IPAddress" fw-01 (root) # diag debug flow show console enable show trace messages on console fw-01 (root) # diag debug flow trace start 1000 fw-01 (root) # fw-01 (root) # fw-01 (root) # fw-01 (root) # 2016-02-22 16:50:47 id=13 trace_id=6464 msg="vd-root received a packet(proto=17, "Client Public IPAddress":25300->"Firewall wan IPAddress":500) from wan1." 2016-02-22 16:50:47 id=13 trace_id=6464 msg="allocate a new session-05bb03f5" 2016-02-22 16:50:47 id=13 trace_id=6465 msg="vd-root received a packet(proto=17, "Firewall wan IPAddress":500->"Client Public IPAddress":25300) from local." 2016-02-22 16:50:47 id=13 trace_id=6465 msg="Find an existing session, id-05bb03f5, reply direction" 2016-02-22 16:50:47 id=13 trace_id=6466 msg="vd-root received a packet(proto=17, "Client Public IPAddress":25300->"Firewall wan IPAddress":500) from wan1." 2016-02-22 16:50:47 id=13 trace_id=6466 msg="Find an existing session, id-05bb03f5, original direction" 2016-02-22 16:50:47 id=13 trace_id=6467 msg="vd-root received a packet(proto=17, "Firewall wan IPAddress":500->"Client Public IPAddress":25300) from local." 2016-02-22 16:50:47 id=13 trace_id=6467 msg="Find an existing session, id-05bb03f5, reply direction" 2016-02-22 16:50:47 id=13 trace_id=6468 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:50:47 id=13 trace_id=6468 msg="allocate a new session-05bb03f9" 2016-02-22 16:50:47 id=13 trace_id=6469 msg="vd-root received a packet(proto=17, "Firewall wan IPAddress":4500->"Client Public IPAddress":21203) from local." 2016-02-22 16:50:47 id=13 trace_id=6469 msg="Find an existing session, id-05bb03f9, reply direction" 2016-02-22 16:50:47 id=13 trace_id=6470 msg="vd-root received a packet(proto=17, "Firewall wan IPAddress":4500->"Client Public IPAddress":21203) from local." 2016-02-22 16:50:47 id=13 trace_id=6470 msg="Find an existing session, id-05bb03f9, reply direction" 2016-02-22 16:50:48 id=13 trace_id=6471 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:50:48 id=13 trace_id=6471 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:50:48 id=13 trace_id=6472 msg="vd-root received a packet(proto=17, "Firewall wan IPAddress":4500->"Client Public IPAddress":21203) from local." 2016-02-22 16:50:48 id=13 trace_id=6472 msg="Find an existing session, id-05bb03f9, reply direction" 2016-02-22 16:50:49 id=13 trace_id=6473 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:50:49 id=13 trace_id=6473 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:50:49 id=13 trace_id=6474 msg="vd-root received a packet(proto=17, "Firewall wan IPAddress":4500->"Client Public IPAddress":21203) from local." 2016-02-22 16:50:49 id=13 trace_id=6474 msg="Find an existing session, id-05bb03f9, reply direction" 2016-02-22 16:50:49 id=13 trace_id=6475 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:50:49 id=13 trace_id=6475 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:50:49 id=13 trace_id=6476 msg="vd-root received a packet(proto=17, "Firewall wan IPAddress":4500->"Client Public IPAddress":21203) from local." 2016-02-22 16:50:49 id=13 trace_id=6476 msg="Find an existing session, id-05bb03f9, reply direction" 2016-02-22 16:50:52 id=13 trace_id=6477 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:50:52 id=13 trace_id=6477 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:50:52 id=13 trace_id=6478 msg="vd-root received a packet(proto=17, "Firewall wan IPAddress":4500->"Client Public IPAddress":21203) from local." 2016-02-22 16:50:52 id=13 trace_id=6478 msg="Find an existing session, id-05bb03f9, reply direction" 2016-02-22 16:50:54 id=13 trace_id=6479 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:50:54 id=13 trace_id=6479 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:50:54 id=13 trace_id=6479 msg="NAT-T keep-alive" 2016-02-22 16:50:54 id=13 trace_id=6480 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:50:54 id=13 trace_id=6480 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:50:57 id=13 trace_id=6481 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:50:57 id=13 trace_id=6481 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:50:57 id=13 trace_id=6482 msg="vd-root received a packet(proto=17, "Firewall wan IPAddress":4500->"Client Public IPAddress":21203) from local." 2016-02-22 16:50:57 id=13 trace_id=6482 msg="Find an existing session, id-05bb03f9, reply direction" 2016-02-22 16:50:59 id=13 trace_id=6483 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:50:59 id=13 trace_id=6483 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:50:59 id=13 trace_id=6483 msg="NAT-T keep-alive" 2016-02-22 16:51:03 id=13 trace_id=6484 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:51:03 id=13 trace_id=6484 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:51:03 id=13 trace_id=6485 msg="vd-root received a packet(proto=17, "Firewall wan IPAddress":4500->"Client Public IPAddress":21203) from local." 2016-02-22 16:51:03 id=13 trace_id=6485 msg="Find an existing session, id-05bb03f9, reply direction" 2016-02-22 16:51:04 id=13 trace_id=6486 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:51:04 id=13 trace_id=6486 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:51:04 id=13 trace_id=6486 msg="NAT-T keep-alive" 2016-02-22 16:51:08 id=13 trace_id=6487 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:51:08 id=13 trace_id=6487 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:51:08 id=13 trace_id=6488 msg="vd-root received a packet(proto=17, "Firewall wan IPAddress":4500->"Client Public IPAddress":21203) from local." 2016-02-22 16:51:08 id=13 trace_id=6488 msg="Find an existing session, id-05bb03f9, reply direction" 2016-02-22 16:51:09 id=13 trace_id=6489 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:51:09 id=13 trace_id=6489 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:51:09 id=13 trace_id=6489 msg="NAT-T keep-alive" 2016-02-22 16:51:13 id=13 trace_id=6490 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:51:13 id=13 trace_id=6490 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:51:13 id=13 trace_id=6491 msg="vd-root received a packet(proto=17, "Firewall wan IPAddress":4500->"Client Public IPAddress":21203) from local." 2016-02-22 16:51:13 id=13 trace_id=6491 msg="Find an existing session, id-05bb03f9, reply direction" 2016-02-22 16:51:14 id=13 trace_id=6492 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:51:14 id=13 trace_id=6492 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:51:14 id=13 trace_id=6492 msg="NAT-T keep-alive" 2016-02-22 16:51:18 id=13 trace_id=6493 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:51:18 id=13 trace_id=6493 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:51:18 id=13 trace_id=6494 msg="vd-root received a packet(proto=17, "Firewall wan IPAddress":4500->"Client Public IPAddress":21203) from local." 2016-02-22 16:51:18 id=13 trace_id=6494 msg="Find an existing session, id-05bb03f9, reply direction" 2016-02-22 16:51:19 id=13 trace_id=6495 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:51:19 id=13 trace_id=6495 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:51:19 id=13 trace_id=6495 msg="NAT-T keep-alive" 2016-02-22 16:51:24 id=13 trace_id=6496 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:51:24 id=13 trace_id=6496 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:51:24 id=13 trace_id=6497 msg="vd-root received a packet(proto=17, "Firewall wan IPAddress":4500->"Client Public IPAddress":21203) from local." 2016-02-22 16:51:24 id=13 trace_id=6497 msg="Find an existing session, id-05bb03f9, reply direction" 2016-02-22 16:51:24 id=13 trace_id=6498 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:51:24 id=13 trace_id=6498 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:51:24 id=13 trace_id=6498 msg="NAT-T keep-alive" 2016-02-22 16:51:29 id=13 trace_id=6499 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:51:29 id=13 trace_id=6499 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:51:29 id=13 trace_id=6499 msg="NAT-T keep-alive" 2016-02-22 16:51:29 id=13 trace_id=6500 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:51:29 id=13 trace_id=6500 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:51:29 id=13 trace_id=6501 msg="vd-root received a packet(proto=17, "Firewall wan IPAddress":4500->"Client Public IPAddress":21203) from local." 2016-02-22 16:51:29 id=13 trace_id=6501 msg="Find an existing session, id-05bb03f9, reply direction" 2016-02-22 16:51:34 id=13 trace_id=6502 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:51:34 id=13 trace_id=6502 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:51:34 id=13 trace_id=6502 msg="NAT-T keep-alive" 2016-02-22 16:51:35 id=13 trace_id=6503 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:51:35 id=13 trace_id=6503 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:51:35 id=13 trace_id=6504 msg="vd-root received a packet(proto=17, "Firewall wan IPAddress":4500->"Client Public IPAddress":21203) from local." 2016-02-22 16:51:35 id=13 trace_id=6504 msg="Find an existing session, id-05bb03f9, reply direction" 2016-02-22 16:51:39 id=13 trace_id=6505 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:51:39 id=13 trace_id=6505 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:51:39 id=13 trace_id=6505 msg="NAT-T keep-alive" 2016-02-22 16:51:40 id=13 trace_id=6506 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:51:40 id=13 trace_id=6506 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:51:40 id=13 trace_id=6507 msg="vd-root received a packet(proto=17, "Firewall wan IPAddress":4500->"Client Public IPAddress":21203) from local." 2016-02-22 16:51:40 id=13 trace_id=6507 msg="Find an existing session, id-05bb03f9, reply direction" 2016-02-22 16:51:44 id=13 trace_id=6508 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:51:44 id=13 trace_id=6508 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:51:44 id=13 trace_id=6508 msg="NAT-T keep-alive" 2016-02-22 16:51:46 id=13 trace_id=6509 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:51:46 id=13 trace_id=6509 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:51:46 id=13 trace_id=6510 msg="vd-root received a packet(proto=17, "Firewall wan IPAddress":4500->"Client Public IPAddress":21203) from local." 2016-02-22 16:51:46 id=13 trace_id=6510 msg="Find an existing session, id-05bb03f9, reply direction" 2016-02-22 16:51:49 id=13 trace_id=6511 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:51:49 id=13 trace_id=6511 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:51:49 id=13 trace_id=6511 msg="NAT-T keep-alive" 2016-02-22 16:51:51 id=13 trace_id=6512 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:51:51 id=13 trace_id=6512 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:51:51 id=13 trace_id=6513 msg="vd-root received a packet(proto=17, "Firewall wan IPAddress":4500->"Client Public IPAddress":21203) from local." 2016-02-22 16:51:51 id=13 trace_id=6513 msg="Find an existing session, id-05bb03f9, reply direction" 2016-02-22 16:51:54 id=13 trace_id=6514 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:51:54 id=13 trace_id=6514 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:51:54 id=13 trace_id=6514 msg="NAT-T keep-alive" 2016-02-22 16:51:57 id=13 trace_id=6515 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:51:57 id=13 trace_id=6515 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:51:57 id=13 trace_id=6516 msg="vd-root received a packet(proto=17, "Firewall wan IPAddress":4500->"Client Public IPAddress":21203) from local." 2016-02-22 16:51:57 id=13 trace_id=6516 msg="Find an existing session, id-05bb03f9, reply direction" 2016-02-22 16:51:59 id=13 trace_id=6517 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:51:59 id=13 trace_id=6517 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:51:59 id=13 trace_id=6517 msg="NAT-T keep-alive" 2016-02-22 16:52:02 id=13 trace_id=6518 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:52:02 id=13 trace_id=6518 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:52:02 id=13 trace_id=6519 msg="vd-root received a packet(proto=17, "Firewall wan IPAddress":4500->"Client Public IPAddress":21203) from local." 2016-02-22 16:52:02 id=13 trace_id=6519 msg="Find an existing session, id-05bb03f9, reply direction" 2016-02-22 16:52:04 id=13 trace_id=6520 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:52:04 id=13 trace_id=6520 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:52:04 id=13 trace_id=6520 msg="NAT-T keep-alive" 2016-02-22 16:52:08 id=13 trace_id=6521 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:52:08 id=13 trace_id=6521 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:52:08 id=13 trace_id=6522 msg="vd-root received a packet(proto=17, "Firewall wan IPAddress":4500->"Client Public IPAddress":21203) from local." 2016-02-22 16:52:08 id=13 trace_id=6522 msg="Find an existing session, id-05bb03f9, reply direction" 2016-02-22 16:52:09 id=13 trace_id=6523 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:52:09 id=13 trace_id=6523 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:52:09 id=13 trace_id=6523 msg="NAT-T keep-alive" 2016-02-22 16:52:13 id=13 trace_id=6524 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:52:13 id=13 trace_id=6524 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:52:13 id=13 trace_id=6525 msg="vd-root received a packet(proto=17, "Firewall wan IPAddress":4500->"Client Public IPAddress":21203) from local." 2016-02-22 16:52:13 id=13 trace_id=6525 msg="Find an existing session, id-05bb03f9, reply direction" 2016-02-22 16:52:14 id=13 trace_id=6526 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:52:14 id=13 trace_id=6526 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:52:14 id=13 trace_id=6526 msg="NAT-T keep-alive" 2016-02-22 16:52:18 id=13 trace_id=6527 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:52:18 id=13 trace_id=6527 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:52:18 id=13 trace_id=6528 msg="vd-root received a packet(proto=17, "Firewall wan IPAddress":4500->"Client Public IPAddress":21203) from local." 2016-02-22 16:52:18 id=13 trace_id=6528 msg="Find an existing session, id-05bb03f9, reply direction" 2016-02-22 16:52:19 id=13 trace_id=6529 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:52:19 id=13 trace_id=6529 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:52:19 id=13 trace_id=6529 msg="NAT-T keep-alive" 2016-02-22 16:52:22 id=13 trace_id=6530 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:52:22 id=13 trace_id=6530 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:52:23 id=13 trace_id=6531 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:52:23 id=13 trace_id=6531 msg="Find an existing session, id-05bb03f9, original direction" 2016-02-22 16:52:23 id=13 trace_id=6532 msg="vd-root received a packet(proto=17, "Client Public IPAddress":21203->"Firewall wan IPAddress":4500) from wan1." 2016-02-22 16:52:23 id=13 trace_id=6532 msg="Find an existing session, id-05bb03f9, original direction"

 

 

 

sims
New Contributor III

Hi,

The above log is enabled before session initating

fw-01 (root) # 2016-02-22 16:50:47 id=13 trace_id=6464 msg="vd-root received a packet(proto=17, "Client Public IPAddress":25300->"Firewall wan IPAddress":500) from wan1." 2016-02-22 16:50:47 id=13 trace_id=6464 msg="allocate a new session-05bb03f5"

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors