<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: S2S VPN State &amp;amp; Statistics per tunnel/peer? in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/S2S-VPN-State-amp-Statistics-per-tunnel-peer/m-p/187902#M34644</link>
    <description>&lt;P&gt;I believe Fortinet has similar. Lets see if its possible with CP, great inquiry.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.fortinet.com/t5/FortiGate/Troubleshooting-Tip-Troubleshooting-IPsec-Site-to-Site-Tunnel/ta-p/195672" target="_blank"&gt;https://community.fortinet.com/t5/FortiGate/Troubleshooting-Tip-Troubleshooting-IPsec-Site-to-Site-Tunnel/ta-p/195672&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.fortinet.com/t5/FortiGate/Troubleshooting-Tip-IPsec-VPNs-tunnels/ta-p/195955" target="_blank"&gt;https://community.fortinet.com/t5/FortiGate/Troubleshooting-Tip-IPsec-VPNs-tunnels/ta-p/195955&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 27 Jul 2023 16:37:45 GMT</pubDate>
    <dc:creator>the_rock</dc:creator>
    <dc:date>2023-07-27T16:37:45Z</dc:date>
    <item>
      <title>S2S VPN State &amp; Statistics per tunnel/peer?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/S2S-VPN-State-amp-Statistics-per-tunnel-peer/m-p/187901#M34643</link>
      <description>&lt;P&gt;Does anyone know a way to pull current statistics from a particular Site to Site VPN tunnel for troubleshooting purposes?&amp;nbsp; What I'm looking for is the equivalent of the Cisco&amp;nbsp;&lt;STRONG&gt;show vpn-sessiondb&lt;/STRONG&gt; command like this:&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="cisco0.png" style="width: 795px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/21907i6D8D88C449DE38E6/image-size/large?v=v2&amp;amp;px=999" role="button" title="cisco0.png" alt="cisco0.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;This command is useful for seeing if Tx/Rx counters are incrementing to confirm two-way communication for a VPN, and verify current rekey/lifetime timers.&amp;nbsp; Usually I would just run a packet capture and look for the presence of IKE/IPSEC traffic but there has to be a better way.&amp;nbsp; What I've tried:&lt;/P&gt;
&lt;P&gt;1) &lt;STRONG&gt;cpstat -f all vpn&lt;/STRONG&gt; - Dumps very detailed VPN statistics but they are global and no apparent way to focus on a particular tunnel.&lt;/P&gt;
&lt;P&gt;2) &lt;STRONG&gt;vpn tu&lt;/STRONG&gt; - Just shows SA states with no statistics&lt;/P&gt;
&lt;P&gt;3) SmartView Monitor - Tunnels...Monitor Traffic of this tunnel.&amp;nbsp; Shows the live tunnel state and also allows graphing of top sources/destinations/connections including statistics but no apparent way to do it for all traffic in the tunnel.&amp;nbsp; I'd imagine this raw data can be acquired by the rtm driver via the &lt;STRONG&gt;rtm monitor&lt;/STRONG&gt; command on the gateway, but there is practically no documentation for how to use it.&lt;/P&gt;
&lt;P&gt;4) I suppose Accounting could be set on the rule matching traffic to/from the tunnel, but those stats would only be updated every 10 minutes.&lt;/P&gt;
&lt;P&gt;Any other suggestions?&lt;/P&gt;</description>
      <pubDate>Thu, 27 Jul 2023 16:19:11 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/S2S-VPN-State-amp-Statistics-per-tunnel-peer/m-p/187901#M34643</guid>
      <dc:creator>Timothy_Hall</dc:creator>
      <dc:date>2023-07-27T16:19:11Z</dc:date>
    </item>
    <item>
      <title>Re: S2S VPN State &amp; Statistics per tunnel/peer?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/S2S-VPN-State-amp-Statistics-per-tunnel-peer/m-p/187902#M34644</link>
      <description>&lt;P&gt;I believe Fortinet has similar. Lets see if its possible with CP, great inquiry.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.fortinet.com/t5/FortiGate/Troubleshooting-Tip-Troubleshooting-IPsec-Site-to-Site-Tunnel/ta-p/195672" target="_blank"&gt;https://community.fortinet.com/t5/FortiGate/Troubleshooting-Tip-Troubleshooting-IPsec-Site-to-Site-Tunnel/ta-p/195672&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.fortinet.com/t5/FortiGate/Troubleshooting-Tip-IPsec-VPNs-tunnels/ta-p/195955" target="_blank"&gt;https://community.fortinet.com/t5/FortiGate/Troubleshooting-Tip-IPsec-VPNs-tunnels/ta-p/195955&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 27 Jul 2023 16:37:45 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/S2S-VPN-State-amp-Statistics-per-tunnel-peer/m-p/187902#M34644</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-07-27T16:37:45Z</dc:date>
    </item>
    <item>
      <title>Re: S2S VPN State &amp; Statistics per tunnel/peer?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/S2S-VPN-State-amp-Statistics-per-tunnel-peer/m-p/187904#M34645</link>
      <description>&lt;P&gt;Does command like below give you anything more?&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;[Expert@quantum-firewall:0]# vpn tu tlist -p 4.205.75.119&lt;/P&gt;
&lt;P&gt;+-----------------------------------------+----------------------------------+---------------------+&lt;BR /&gt;| Peer: 4.205.75.119 - Azure | MSA: 7fdb539aa848 | i: 0 ref: 1 |&lt;BR /&gt;| Methods: ESP Tunnel PFS AES-256 SHA256..| | i: 1 ref: 1 |&lt;BR /&gt;| My TS: 0.0.0.0/0 | | i: 2 ref: 1 |&lt;BR /&gt;| Peer TS: 0.0.0.0/0 | | i: 3 ref: 1 |&lt;BR /&gt;| MSPI: 1800001 (i: 3, p: 0, d: 1) | No outbound SPI | |&lt;BR /&gt;| Tunnel created: | IPsec | |&lt;BR /&gt;| Tunnel expiration: | Disconnected | |&lt;BR /&gt;+-----------------------------------------+----------------------------------+---------------------+&lt;/P&gt;
&lt;P&gt;(0) Site-to-Site tunnels are up:&lt;BR /&gt;IPsec 0&lt;BR /&gt;NAT-T 0&lt;/P&gt;
&lt;P&gt;(0) Number of Active Clients:&lt;BR /&gt;NAT-T 0&lt;BR /&gt;Visitor Mode 0&lt;BR /&gt;SSL 0&lt;BR /&gt;L2TP 0&lt;BR /&gt;strongSwan 0&lt;/P&gt;
&lt;P&gt;[Expert@quantum-firewall:0]#&lt;/P&gt;</description>
      <pubDate>Thu, 27 Jul 2023 17:27:11 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/S2S-VPN-State-amp-Statistics-per-tunnel-peer/m-p/187904#M34645</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-07-27T17:27:11Z</dc:date>
    </item>
    <item>
      <title>Re: S2S VPN State &amp; Statistics per tunnel/peer?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/S2S-VPN-State-amp-Statistics-per-tunnel-peer/m-p/187919#M34648</link>
      <description>&lt;P&gt;&lt;STRONG&gt;vpn tu tlist start&lt;/STRONG&gt; it will trigger statistic counters for every phase2&lt;/P&gt;
&lt;P&gt;Then, You can monitor encrypted/decrypted kbytes data by vpn tu tlist&lt;/P&gt;</description>
      <pubDate>Thu, 27 Jul 2023 21:35:02 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/S2S-VPN-State-amp-Statistics-per-tunnel-peer/m-p/187919#M34648</guid>
      <dc:creator>CheckPointerXL</dc:creator>
      <dc:date>2023-07-27T21:35:02Z</dc:date>
    </item>
    <item>
      <title>Re: S2S VPN State &amp; Statistics per tunnel/peer?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/S2S-VPN-State-amp-Statistics-per-tunnel-peer/m-p/187920#M34649</link>
      <description>&lt;P&gt;I dont believe thats good enough for Tim. I had that already on and did not give me anything close to what he showed from Cisco.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Thu, 27 Jul 2023 22:17:08 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/S2S-VPN-State-amp-Statistics-per-tunnel-peer/m-p/187920#M34649</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2023-07-27T22:17:08Z</dc:date>
    </item>
    <item>
      <title>Re: S2S VPN State &amp; Statistics per tunnel/peer?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/S2S-VPN-State-amp-Statistics-per-tunnel-peer/m-p/262424#M51501</link>
      <description>&lt;P&gt;Hello,&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/597"&gt;@Timothy_Hall&lt;/a&gt;&amp;nbsp;&lt;BR /&gt;Is there currently a CLI command that displays the “statistics” of a VPN tunnel?&lt;BR /&gt;To get an idea of whether there are encrypted/decrypted packets through a particular tunnel?&lt;BR /&gt;Similarly, could you help me with the correct command syntax to “capture” real-time traffic from a VPN, as I have a scenario where I am unable to see traffic reaching my FW when the other end performs an ICMP test on me.&lt;BR /&gt;My LAN IP: 10.80.0.10&lt;BR /&gt;Peer LAN IP: 172.20.10.55&lt;BR /&gt;Traffic: ICMP&lt;BR /&gt;Can a FW MONITOR be applied in this scenario?&lt;BR /&gt;Thank you for your comments.&lt;/P&gt;</description>
      <pubDate>Tue, 11 Nov 2025 03:56:15 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/S2S-VPN-State-amp-Statistics-per-tunnel-peer/m-p/262424#M51501</guid>
      <dc:creator>Matlu</dc:creator>
      <dc:date>2025-11-11T03:56:15Z</dc:date>
    </item>
    <item>
      <title>Re: S2S VPN State &amp; Statistics per tunnel/peer?</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/S2S-VPN-State-amp-Statistics-per-tunnel-peer/m-p/262431#M51502</link>
      <description>&lt;P&gt;The closest I found is:&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;vpn tu tlist start&lt;/P&gt;
&lt;P&gt;and then&lt;/P&gt;
&lt;P&gt;vpn tu tlist -br&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 11 Nov 2025 06:42:15 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/S2S-VPN-State-amp-Statistics-per-tunnel-peer/m-p/262431#M51502</guid>
      <dc:creator>Steffen_Appel</dc:creator>
      <dc:date>2025-11-11T06:42:15Z</dc:date>
    </item>
  </channel>
</rss>

