[isalist] Re: VPN Monitoring

  • From: "Mark Morgan" <MMorgan@xxxxxxxxxxxxxxxxxxxxx>
  • To: <isalist@xxxxxxxxxxxxx>
  • Date: Wed, 12 Apr 2006 14:44:33 -0700

 
You can set up a connectivity verifier, open isa console select 
monitoring-->connectivity-->Create new verifier, point it to ping the other 
side of your tunnel. Now you can have it email you if it is slow or not 
responding, select Alerts tab-->Configure alert definitions and find no 
connectivity and slow connectivity highlight and edit select Actions tab check 
send e-mail enter appropriate Info. As far as logging goes I have not found any 
good info in the any logs for site to site VPN status. there is ip monitor you 
can check I don't know if you can dump the info to a log and it will only tell 
you if it is up or down and filter settings not much more. Start run and type 
mmc add ip security monitor to the console. 
 
btw: if it is a TTL setting dropping the tunnel the verifier should keep the 
tunnel alive by sending traffic regularly.
 
I know it's not much to go on but hope it helps.
 
Mark

-----Original Message-----
From: isalist-bounce@xxxxxxxxxxxxx [mailto:isalist-bounce@xxxxxxxxxxxxx]On 
Behalf Of Ray Dzek
Sent: Wednesday, April 12, 2006 9:46 AM
To: isalist@xxxxxxxxxxxxx
Subject: [isalist] VPN Monitoring


Hi all... 
 
Its a hair less frantic this week.  We are trying to track down issues with our 
point to point IPSec tunnels to Europe.  We are using ISA on this end and 
SonicWall TZ150's and 170's on the far end.  The far end is trying to run 
Oracle 11i Applications and are getting intermittent timeouts.  Usually 2-3 per 
day.  (Their day.  We are PST and they are CET)  There is nothing in the ISA 
logs to indicate the tunnel is dropping, but there doesn't appear to be ANY 
logging of anything related to the tunnel in the event logs, other than traffic 
logged into the firewall logs.  But the firewall logs won't show the tunnel as 
being down.  Is there a way to monitor the tunnel status?  Nothing appears to 
be logged if/when the tunnel is dropped and then reconnected.  Can anybody 
recommend something that could monitor real-time status of the tunnels?  The 
"outage" appears to just be a "wink" where the applications will disconnect for 
just a second.
 
Thanks all!
 


Ray Dzek
Net Ops / Helpdesk Supervisor
Specialized Bicycle Components 

 


--
No virus found in this incoming message.
Checked by AVG Free Edition.
Version: 7.1.385 / Virus Database: 268.4.1/310 - Release Date: 4/12/2006



-- 
No virus found in this outgoing message.
Checked by AVG Free Edition.
Version: 7.1.385 / Virus Database: 268.4.1/310 - Release Date: 4/12/2006
 

Other related posts: