Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Lesley
Leader Leader
Leader

Monitor VPN data usage

Hi everyone,

I am trying to get data usage from a site to site VPN tunnel into an overview. (how much mbit is the tunnel using)

This could be SmartEvent or SmartView Monitor.

The tunnel is from Check Point towards another vendor firewall.

I have played with SmartView Monitor and there we only can get the live data. There is a history option that you can set under the gateway object but this is limited. Only live data is not sufficient for this case.

Also tried to make many Smart Event reports but it does not show data. (for example: https://community.checkpoint.com/t5/SmartEvent/Enhanced-VPN-Dashboard/m-p/100235#M6)

On the VPN rule we made sure accounting is enabled on the logging. 

I am out of ideas. Customer is running R81.10

You guys have any idea? 

-------
If you like this post please give a thumbs up(kudo)! 🙂
0 Kudos
35 Replies
Lesley
Leader Leader
Leader

Both gateways are in my control same mgmt. 

Thanks all for the help I will suggest this to the customer. Looks like proven tech 😉 

-------
If you like this post please give a thumbs up(kudo)! 🙂
the_rock
Legend
Legend

I think so, for now, appears its best option.

Andy

0 Kudos
JozkoMrkvicka
Authority
Authority

did you or @Lesley check that new R82 option Advanced VPN Monitoring tool that shows information on each VPN Tunnel and tracks its health and performance ? Some real feedback would be great 😉

From screenshot provided by @the_rock , it looks like just ping or other probes are used to check basic health of VPN status ?

Kind regards,
Jozko Mrkvicka
0 Kudos
the_rock
Legend
Legend

Thats what it seems like to me brother. I will look more into it 2moro, as kids would say : - )

Andy

0 Kudos
tjoll
Participant
Participant

@JozkoMrkvicka, Lesley is a colleague of mine and we're working together on this issue. 

According to the documentation, the Advanced VPN monitoring tool is to monitor the health and status of a tunnel. So basically, up or down. I can't find anything related to current/peak throughput. 

In our setup we've almost utilized our 1GB interface fully, but if the traffic is related to VPN's, it's not visible which VPN is causing the issue. In our setup, we've multiple vpn's. 

@the_rock I had another idea. Maybe migrate the domain based vpn's to route based and monitor the vti interface. I know it might be a difficult approach because we need to convince the third parties as well but it might be the only option.

Or maybe something we can do with Smartevent reports. Although, I was not able to get the data in the reports.

Thanks for your help guys.

 

Mitchel

0 Kudos
the_rock
Legend
Legend

Let me do some testing in R82 with smart event and see.

Andy

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events