|
This screen shows the status of several software and hardware variables at the time the screen displays. From this screen you can also display the status and statistics for SEP modules, system power supplies, and network interfaces.
To update the screen and its data, click Refresh. The date and time indicate when the screen was last updated.
The type, or model number, of this VPN Concentrator.
The version name, number, and date of the VPN Concentrator bootcode software file. When you boot or reset the system, the bootcode software runs system diagnostics, and it loads and executes the system software image. The bootcode is installed at the factory, and there is no need to upgrade it. If an engineering change requires a bootcode upgrade, only Cisco support personnel are authorized to do this.
The version name, number, and date of the VPN Concentrator system software image file. You can update this image file from the Administration | Software Update screen.
The amount of time since the VPN Concentrator was last booted or reset.
The date and time that the VPN Concentrator was last booted or reset.
The total amount of SDRAM memory installed in the VPN Concentrator.
On models 3015-3080, the front panel image is an active link. Put the mouse pointer anywhere within the image and click. The Manager displays the Monitoring | System Status | LED Status screen.
The back panel image includes active links for configurable modules installed in the VPN Concentrator: Ethernet interfaces, power supplies, and SEP modules. Use the mouse pointer to select a module on the back-panel image and click anywhere in the highlighted area. The Manager displays the appropriate Monitoring | System Status | Interface, Power, or SEP screen.
The VPN Concentrator includes two cooling fans. In the Model 3005, they are on the rear of the chassis, with Fan 1 on the left as you face the rear. In the Model 3015-3080, they are on the right side of the chassis as you face the front, with Fan 1 closest to the front. This table shows the RPM for both fans. The nominal value is 5000 RPM for the Model 3005 and 3800 RPM for the Model 3015-3080, with an acceptable minimum of 3000 RPM for both. Values below this minimum trigger a hardware event.
The VPN Concentrator Model 3015-3080 includes two temperature sensors on the main printed circuit board: one near the CPU and one near the power supply cage. The Model 3005 has one sensor near the CPU. This table shows the temperature at the sensor(s). Temperatures between 0° and 50°C (32° and 122°F) are acceptable. Values outside this range trigger a hardware event.
This usage graph shows the CPU load as a percentage of the maximum possible load. Each segment represents ten percent of the maximum possible load.
This usage graph shows the number of active sessions as a percentage of the maximum possible sessions. For example, if 5000 sessions is the maximum, each segment represents 500 sessions. The first segment lights with the first session, the second segment lights with 10 percent plus one session, etc.
This usage graph shows current throughput (measured in LAN packets) as a percentage of the maximum possible system throughput. For example, if two interfaces are set for 100 Mbps, the maximum possible throughput is 200 Mbps and each segment represents 20 Mbps.
This screen displays status and statistics for a VPN Concentrator Ethernet interface. To configure an interface, see Configuration | Interfaces.
To reset, or start anew, the screen contents, click Reset. The system temporarily resets a counter for the chosen statistics without affecting the operation of the device. You can then view statistical information without affecting the actual current values of the counters or other management sessions. The function is like that of a vehicle's trip odometer, versus the regular odometer.
To restore the screen contents to their actual statistical values, click Restore. This icon displays only if you previously clicked the Reset icon.
To update the screen and its data, click Refresh. The date and time indicate when the screen was last updated.
To return to the Monitoring | System Status screen, click Back.
The VPN Concentrator Ethernet interface number:
The IP address configured on this interface.
The operational status of this interface:
The number of unicast packets that were received by this interface since the VPN Concentrator was last booted or reset. Unicast packets are those addressed to a single host.
The number of unicast packets that were routed to this interface for transmission since the VPN Concentrator was last booted or reset, including those that were discarded or not sent. Unicast packets are those addressed to a single host.
The number of multicast packets that were received by this interface since the VPN Concentrator was last booted or reset. Multicast packets are those addressed to a specific group of hosts.
The number of multicast packets that were routed to this interface for transmission since the VPN Concentrator was last booted or reset, including those that were discarded or not sent. Multicast packets are those addressed to a specific group of hosts.
The number of broadcast packets that were received by this interface since the VPN Concentrator was last booted or reset. Broadcast packets are those addressed to all hosts on a network.
The number of broadcast packets that were routed to this interface for transmission since the VPN Concentrator was last booted or reset, including those that were discarded or not sent. Broadcast packets are those addressed to all hosts on a network.
This screen displays status and data for VPN Concentrator power supplies and voltage sensors in the system. To configure alarm thresholds for system voltages, see the Configuration | Interfaces | Power screen.
To update the screen and its data, click Refresh. The date and time indicate when the screen was last updated.
To return to the Monitoring | System Status screen, click Back.
Voltage and status for the voltage sensor on the CPU chip. The screen shows either 1.9 or 2.5 volts, depending on the CPU chip in the system.
Voltages and status of the 3.3- and 5-volt outputs from the power supplies.
Voltages and status of the 3.3- and 5-volt sensors on the main circuit board.
The status of voltages relative to the configured thresholds:
Note This screen appears on models 3015-3080 only. |
This screen displays status and statistics for a VPN Concentrator SEP (Scalable Encryption Processing) module, which performs hardware-based cryptographic functions:
The screen shows cumulative data since the system was last booted or reset.
The VPN Concentrator can contain up to four SEP modules for maximum system throughput and redundancy. Two SEP modules provide maximum throughput; additional modules provide redundancy in case of module failure.
SEP redundancy requires no configuration: it is always enabled and completely automatic; no administrator action is required. If a SEP module fails, the VPN Concentrator automatically switches active sessions to another SEP module. If the system has only one SEP module and it fails, the sessions automatically use software cryptographic functions. Even if a SEP module fails, the VPN Concentrator supports the number of sessions for which it is licensed.
If a SEP module fails, the system generates an event of severity level 2. It continues to generate an event every 10 minutes until the failed module is removed or replaced and the VPN Concentrator is rebooted. The front- and back-panel Status LEDs also indicate the failed module, as does this screen.
To reset, or start anew, the screen contents, click Reset. The system temporarily resets a counter for the chosen statistics without affecting the operation of the device. You can then view statistical information without affecting the actual current values of the counters or other management sessions. The function is like that of a vehicle's trip odometer, versus the regular odometer.
To restore the screen contents to their actual statistical values, click Restore. This icon displays only if you previously clicked the Reset icon.
To update the screen and its data, click Refresh. The date and time indicate when the screen was last updated.
To return to the Monitoring | System Status screen, click Back.
The chassis slot number where this SEP is inserted, and the type of hardware in this SEP:
The functional state of this SEP module:
The version of DSP (Digital Signal Processing) microcode running on this SEP module. This information might be useful during troubleshooting.
The number of inbound octets (bytes) to which this SEP applied a hashing algorithm for authentication.
The number of inbound authentication-only hashed packets processed by this SEP. Only hashing algorithms are applied to authentication-only traffic; there is no encryption or decryption.
The number of outbound octets (bytes) to which this SEP applied a hashing algorithm for authentication.
The number of outbound authentication-only hashed packets processed by this SEP. Only hashing algorithms are applied to authentication-only traffic; there is no encryption or decryption.
The number of octets (bytes) that this SEP encrypted.
The number of encryption-only packets processed by this SEP. Only encryption algorithms are applied to encryption-only traffic; there is no hashing or authentication.
The number of octets (bytes) that this SEP decrypted.
The number of decryption-only packets processed by this SEP. Only encryption algorithms are applied to encryption-only traffic; there is no hashing or authentication.
The number of packets that this SEP processed using both hashing (authentication) and encryption algorithms. This is typical processing for tunneled traffic.
The number of packets that this SEP processed using both hashing (authentication) and decryption algorithms.
The number of packets intended for processing by this SEP, but dropped due to the SEP being overloaded.
The number of requests to this SEP to generate random numbers. When needed (requested), the SEP generates a 2-KB block of random numbers and caches them on the VPN Concentrator. Various cryptographic functions require random numbers of different sizes, and they get them from the cache.
The number of times this SEP fulfilled a request to generate a block of random numbers, to replenish the cache.
The number of bytes currently available in the random-number cache on the VPN Concentrator.
The number of times the VPN Concentrator received a request for random numbers and the random-number cache was empty. Since the VPN Concentrator monitors this cache and communicates with the SEP to replenish it, this number should be zero or very small.
The number of times this SEP generated a new Diffie-Hellman key pair. IPSec Security Associations use the Diffie-Hellman algorithm to generate encryption keys, for example.
The number of times this SEP has derived the Diffie-Hellman secret key. In public-key cryptography, the VPN Concentrator receives a remote public key, and the SEP uses the local private key to generate the secret key.
The number of times this SEP has generated an RSA (Rivest, Shamir, Adelman algorithm) digital signature. The VPN Concentrator generates a digital signature when it creates a digital certificate.
The number of times this SEP has verified an RSA digital signature. When the VPN Concentrator receives a signed digital certificate for authentication, it must verify the digital signature by computing a hash of the certificate and comparing it with the received-certificate hash.
The number of RSA-encrypted octets (bytes) / packets this SEP has generated.
The number of RSA-encrypted octets (bytes) / packets this SEP has received and decrypted.
The number of times this SEP has generated a new DSA (Digital Signature Algorithm) encryption-key pair.
The number of times this SEP has generated a DSA digital signature. The VPN Concentrator generates a digital signature when it creates a digital certificate.
The number of times this SEP has verified a DSA digital signature. When the VPN Concentrator receives a signed digital certificate for authentication, it must verify the digital signature by computing a hash of the certificate and comparing it with the received-certificate hash.
Note This screen appears on models 3015-3080 only. |
This screen shows the status of VPN Concentrator front-panel LED indicators, exactly as they appear on the unit itself. LED indicators on the VPN Concentrator are normally green, and the usage graph LEDs are blue. LEDs that are amber, red, or off might indicate an error condition. See "Troubleshooting and System Errors" for descriptions of the LEDs.
The usage graph displays CPU Utilization, Active Sessions, or Throughput, in accordance with the selection you make using the front-panel button. You can "press" the front-panel button either physicallyon the unit itselfor logicallyon this screen. See Monitoring | System Status for an explanation of usage graph units.
To update the screen and its data, click Refresh. The date and time indicate when the screen was last updated.
To toggle the usage graph LEDs, click the front-panel button on this screen. Clicking the button here also changes the selection on the VPN Concentrator itself.
Posted: Fri Apr 18 18:50:41 PDT 2003
All contents are Copyright © 1992--2002 Cisco Systems, Inc. All rights reserved.
Important Notices and Privacy Statement.