Note that another useful tool is 'vpn debug on mon' which writes all of the IKE captured data into a file ikemonitor.snoop which you can open with wireshark or ethereal.
IKEView.exe which parses the information of ike.elg into a GUI making this easier to view. To enable debugging, you need to login to your firewall and enter the command 'vpn debug on Check Point have a tool called vpn debug ikeon' or 'vpn debug trunc'. The $FWDIR/log/ike.elg file contains this information ( once debugging is enabled). VPN TROUBLESHOOTING: REFFER: Basics: IKE negotiation consists of two phases - Phase I (Main mode which is six packets) and Phase II (Quick Mode which is three packets).