Cisco Systems OL-16647-01 Network Router User Manual


  Open as PDF
of 1230
 
42-9
Cisco ASDM User Guide
OL-16647-01
Chapter 42 Monitoring VPN
VPN Statistics
The buttons in this window are as follows:
Note Choose Monitoring > VPN > VPN Statistics > NAC Session Summary if you want to revalidate or
initialize all sessions that are subject to posture validation.
Revalidate Session—Click if the posture of the peer or the assigned access policy (that is, the
downloaded ACL, if any) has changed. Clicking this button initiates a new, unconditional posture
validation. The posture validation and assigned access policy that were in effect before you clicked
this button remain in effect until the new posture validation succeeds or fails. Clicking this button
does not affect the session if it is exempt from posture validation.
Initialize Session—Click if the posture of the peer or the assigned access policy (that is, the
downloaded ACL, if any) has changed, and you want to clear the resources assigned to the session.
Clicking the button purges the EAPoUDP association and access policy, and initiates a new,
unconditional posture validation. The NAC default ACL is effective during the revalidation, so the
session initialization can disrupt user traffic. Clicking this button does not affect the session if it is
exempt from posture validation.
Revalidate Tunnel Group—Click if the posture of the peers in the tunnel group occupied by the
selected session or the assigned access policies (that is, the downloaded ACLs), have changed.
Clicking this button initiates new, unconditional posture validations. The posture validation and
assigned access policy that were in effect for each session in the tunnel group before you clicked
this button remain in effect until the new posture validation succeeds or fails. Clicking this button
does not affect sessions that are exempt from posture validation.
Initialize Tunnel Group—Click if the posture of the peers in the tunnel group occupied by the
selected session, or the assigned access policies (that is, the downloaded ACLs), have changed, and
you want to clear the resources assigned to the sessions. Clicking this button purges the EAPoUDP
associations and access policies (that is, the downloaded ACLs, if any) used for posture validation
in the tunnel group occupied by the selected session, and initiates new, unconditional posture
validations for the effected peers. The NAC default ACL is effective during the revalidations, so the
session initializations can disrupt user traffic. Clicking this button does not affect sessions that are
exempt from posture validation.
Modes
The following table shows the modes in which this feature is available:
Encryption Statistics
This panel shows the data encryption algorithms used by currently active user and administrator sessions
on the security appliance. Each row in the table represents one encryption algorithm type.
Fields
Show Statistics For—Selects a specific server or group or all tunnel groups.
Firewall Mode Security Context
Routed Transparent Single
Multiple
Context System
——