Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
the_rock
Legend
Legend
Jump to solution

Monitoring VPN tunnels

Hey guys,

I know there were few posts about this before, but here is what Im looking for. I know many methods you can check the status of the tunnel itself, with tcpdump on proto 50, vpn tu options, sv monitor etc, but those are all manual methods. What Im after is automatic method that would alert a customer if there is an issue with the tunnel.

I get the options inside the community under tunnel management you can set to tunnel down and up for different actions, but I wonder if there is anything more intuitive (for the lack of better term) that can be set up.

Thanks as always for any suggestions.

Best,

Andy

0 Kudos
36 Replies
the_rock
Legend
Legend

Let me test it tomorrow and will update on the results.

Thank you very much.

Best,

Andy

0 Kudos
the_rock
Legend
Legend

Will test this shortly in Azure lab with my colleague and update.

Best,

Andy

0 Kudos
the_rock
Legend
Legend

Just to let you know, I was able to install that software you mentioned on Linux machine, but then when adding my cluster IP to monitor, it was complaining about connectivity (not sure why), but I will look into it more some time this week. Its not too important atm, as we can easily use SIEM solution to set this up.

Best,

Andy

0 Kudos
the_rock
Legend
Legend

Hey @Blason_R 

I was able to get this installed in Linux lab and looks good! My colleague informed me that Azure side is having some issue, hence tunnel shows as down at the moment. Check mk is very cool.

Thanks again, below is creencap I took from it.

Andy

 

Screenshot_1.png

0 Kudos
Blason_R
Leader
Leader

Thats Correct!! and excellent work Dude

 

Thanks and Regards,
Blason R
CCSA,CCSE,CCCS
the_rock
Legend
Legend

Thanks 🙂

Lets see if I can figure out why tunnel shows as down from CP side, as my colleague said Azure shows connected and graph shows traffic and same shows via vpn tu on my end, but sv monitor keeps saying down...weird.

Andy

0 Kudos
the_rock
Legend
Legend

K, all good now! I had to change tunnel to regular instead of permanent, modify a rule and change some stuff in tunnel management tab in community...it is a lab after all lol

Best,

Andy

 

Screenshot_2.png

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events