Nortel Networks NN46120-104 User Manual

Page 164

Advertising
background image

164

Troubleshooting the NVG

The output first shows groups received from configured authentication
databases. In the preceding example the

trusted

group is returned from

the local user database. If an external authentication database is used, all
groups returned from that database will be shown.

Final groups for the user are all groups where a match is found between
groups returned from configured authentication databases and groups
configured on the VPN Gateway. Matching groups are listed in the order
they are configured on the VPN Gateway. This is also the order in which
the groups will be applied.

<base>

implies that the group’s base profile

will be used.

TTL for user shows the idle timeout (

15m

(15 minutes) in the preceding

example) and the maximum session length (

infinity

in the example).

For detailed information about groups, profiles and so on, see the chapter
"Groups, Access Rules and Profiles" in the CLI/BBI Application Guide for
VPN
.

dns

The

dns

tag logs failed DNS lookups made during a VPN session.

ike

The

ike

tag logs any output that is produced by the IKE daemon, e.g. all

messages related to actual ISAKMP negotiations between the client and
the IKE daemon.

Nortel VPN Gateway

User Guide

NN46120-104

02.01

Standard

14 April 2008

Copyright © 2007-2008 Nortel Networks

.

Advertising