[isalist] Re: VPN Monitoring

  • From: "Thor (Hammer of God)" <thor@xxxxxxxxxxxxxxx>
  • To: "isalist@xxxxxxxxxxxxx" <isalist@xxxxxxxxxxxxx>
  • Date: Wed, 12 Apr 2006 13:50:01 -0700

Is it an actual IPSec tunnel created by an IPSec policy that ISA allows, or
is it a point-to-point L2PT VPN through RRAS?  You can use the IPSec Monitor
MMC for an actual IPSec tunnel or you can enable debug logging in RRAS ­
that may help.
t


On 4/12/06 9:46 AM, "Ray Dzek" <Ray.Dzek@xxxxxxxxxxxxxxx> spoketh to all:

> Hi all... 
>  
> Its a hair less frantic this week.  We are trying to track down issues with
> our point to point IPSec tunnels to Europe.  We are using ISA on this end and
> SonicWall TZ150's and 170's on the far end.  The far end is trying to run
> Oracle 11i Applications and are getting intermittent timeouts.  Usually 2-3
> per day.  (Their day.  We are PST and they are CET)  There is nothing in the
> ISA logs to indicate the tunnel is dropping, but there doesn't appear to be
> ANY logging of anything related to the tunnel in the event logs, other than
> traffic logged into the firewall logs.  But the firewall logs won't show the
> tunnel as being down.  Is there a way to monitor the tunnel status?  Nothing
> appears to be logged if/when the tunnel is dropped and then reconnected.  Can
> anybody recommend something that could monitor real-time status of the
> tunnels?  The "outage" appears to just be a "wink" where the applications will
> disconnect for just a second.
>  
> Thanks all!
>  
> 
> 
> Ray Dzek
> Net Ops / Helpdesk Supervisor
> Specialized Bicycle Components
> 
>  
> 


Other related posts: