Monitoring VPN Tunnels (2024)

R80.40 Logging and Monitoring Administration Guide

Monitoring VPN Tunnels (1)

You are here:

This section describes how to monitor VPN tunnels.

VPN Tunnels Solution

VPN Tunnels are secure links between gateways. These Tunnels ensure secure connections between gateways of an organization and remote access clients.

When Tunnels are created and put to use, you can keep track of their normal function, so that possible malfunctions and connectivity problems can be accessed and solved as soon as possible.

To ensure this security level, SmartView Monitor constantly monitor and analyze the status of an organization's Tunnels to recognize malfunctions and connectivity problems. With the use of Tunnel views, you can generate fully detailed reports that include information about the Tunnels that fulfill the specific Tunnel views conditions. With this information you can monitor Tunnel status, the Community with which a Tunnel is associated, the gateways, to which the Tunnel is connected, and so on.

These are the Tunnel types:

  • A Regular tunnel refers to the ability to send encrypted data between two peers. The Regular tunnel is considered up if both peers have Phase 1 and Phase 2 keys.

  • Permanent tunnels are constantly kept active. As a result, it is easier to recognize malfunctions and connectivity problems. With Permanent tunnels administrators can monitor the two sides of a VPN tunnel and identify problems without delay.

    Permanent tunnels are constantly monitored. Therefore, each VPN tunnel in the community can be set as a Permanent tunnel. A log, alert or user defined action can be issued when the VPN tunnel is down.

    The configuration of Permanent tunnels takes place on the community level and:

    • Can be specified for an entire community. This option sets every VPN tunnel in the community as permanent.

    • Can be specified for a specific Security Gateway Dedicated Check Point server that runs Check Point software to inspect traffic and enforce Security Policies for connected network resources.. Use this option to configure specific Security Gateways to have Permanent tunnels.

    • Can be specified for a single VPN tunnel. This feature allows you to configure specific tunnels between specific Security Gateways as permanent.

This table shows the possible Tunnel states and their significance to a Permanent or Regular Tunnel.

State

Permanent Tunnel

Regular Tunnel

Up

The tunnel works and the data can flow with no problems.

IDE SA (Phase 1) and IPSEC SA (Phase 2) exist with a peer gateway.

Destroyed

The tunnel is destroyed.

The tunnel is destroyed.

Up Phase1

Irrelevant

Tunnel initialization is in process and Phase 1 is complete (that is, IKE SA exists with cookies), but there is no Phase 2.

Down

There is a tunnel failure.

You cannot send and receive data to or from a remote peer.

Irrelevant.

Up Init

The tunnel is initialized.

Irrelevant.

Gateway not Responding

The Security Gateway is not responding.

The Security Gateway is not responding.

VPN Tunnel View Updates

If a Tunnel is deleted from SmartConsole Check Point GUI application used to manage a Check Point environment - configure Security Policies, configure devices, monitor products and events, install updates, and so on., the Tunnel Results View shows the deleted Tunnel for an hour after it was deleted.

If a community is edited, the Results View shows removed tunnels for an hour after they were removed from the community.

Running VPN Tunnel Views

When a Tunnel view runs the results show in the SmartView Monitor client.

A Tunnel view can run:

  • From an existing view

  • When you create a new view

  • When you change an existing view

A Tunnels view can be created and run for:

Run a Down Tunnel View

Down Tunnel view results list all the Tunnels that are currently not active.

To run a down tunnel view:

  1. In the SmartView Monitor, click the Tunnels branch in the Tree View.

  2. In the Tunnels branch (Custom or Predefined), double-click the Down Permanent Tunnel view.

    A list of all the Down Tunnels associated with the selected view properties shows.

Run a Permanent Tunnel View

Permanent Tunnel view results list all of the existing Permanent Tunnels and their current status.

A Permanent Tunnel is a Tunnel that is constantly kept active.

To run a permanent tunnel view:

  1. In the SmartView Monitor client, click the Tunnels branch in the Tree View.

  2. In the Tunnels branch, double-click the Custom Permanent Tunnel view that you want to run.

    A list of the Permanent Tunnels related to the selected view properties shows.

Run a Tunnels on Community View

Tunnels on Community view results list all the Tunnels related to a selected Community.

To run a tunnels on community view:

  1. In the SmartView Monitor client, click the Tunnels branch in the Tree View.

  2. In the Tunnels branch (Custom or Predefined), double-click the Tunnels on Community view.

    A list of all Communities shows.

  3. Select the Community whose Tunnels you want to monitor.

  4. Click OK.

    A list of all the Tunnels related to the selected Community shows.

Run Tunnels on Gateway View

Tunnels on Gateways view results list all of the Tunnels related to a selected Security Gateway.

To run tunnels on Gateway view:

  1. In the SmartView Monitor client, click the Tunnels branch in the Tree View.

  2. In the Tunnels branch (Custom or Predefined), double-click the Tunnels on Gateway view.

    A list of the Security Gateways shows.

  3. Select the Security Gateway, whose Tunnels and their status you want to see.

  4. Click OK.

    A list of the Tunnels related to the selected Security Gateway shows.

04 July 2024

© 2020 - 2024 Check Point Software Technologies Ltd.

Monitoring VPN Tunnels (2024)
Top Articles
SAP Vs. Oracle (2024 ERP System Comparison)
ADHD and Obsessive Thoughts: How to Stop the Endless Analysis
Katie Pavlich Bikini Photos
Gamevault Agent
Hocus Pocus Showtimes Near Harkins Theatres Yuma Palms 14
Free Atm For Emerald Card Near Me
Craigslist Mexico Cancun
Hendersonville (Tennessee) – Travel guide at Wikivoyage
Doby's Funeral Home Obituaries
Vardis Olive Garden (Georgioupolis, Kreta) ✈️ inkl. Flug buchen
Select Truck Greensboro
How To Cut Eelgrass Grounded
Pac Man Deviantart
Alexander Funeral Home Gallatin Obituaries
Craigslist In Flagstaff
Shasta County Most Wanted 2022
Energy Healing Conference Utah
Testberichte zu E-Bikes & Fahrrädern von PROPHETE.
Aaa Saugus Ma Appointment
Geometry Review Quiz 5 Answer Key
Walgreens Alma School And Dynamite
Bible Gateway passage: Revelation 3 - New Living Translation
Yisd Home Access Center
Home
Shadbase Get Out Of Jail
Gina Wilson Angle Addition Postulate
Celina Powell Lil Meech Video: A Controversial Encounter Shakes Social Media - Video Reddit Trend
Walmart Pharmacy Near Me Open
Dmv In Anoka
A Christmas Horse - Alison Senxation
Ou Football Brainiacs
Access a Shared Resource | Computing for Arts + Sciences
Pixel Combat Unblocked
Umn Biology
Cvs Sport Physicals
Mercedes W204 Belt Diagram
Rogold Extension
'Conan Exiles' 3.0 Guide: How To Unlock Spells And Sorcery
Teenbeautyfitness
Weekly Math Review Q4 3
Facebook Marketplace Marrero La
Nobodyhome.tv Reddit
Topos De Bolos Engraçados
Gregory (Five Nights at Freddy's)
Grand Valley State University Library Hours
Holzer Athena Portal
Hampton In And Suites Near Me
Stoughton Commuter Rail Schedule
Bedbathandbeyond Flemington Nj
Free Carnival-themed Google Slides & PowerPoint templates
Otter Bustr
Selly Medaline
Latest Posts
Article information

Author: Amb. Frankie Simonis

Last Updated:

Views: 6569

Rating: 4.6 / 5 (56 voted)

Reviews: 87% of readers found this page helpful

Author information

Name: Amb. Frankie Simonis

Birthday: 1998-02-19

Address: 64841 Delmar Isle, North Wiley, OR 74073

Phone: +17844167847676

Job: Forward IT Agent

Hobby: LARPing, Kitesurfing, Sewing, Digital arts, Sand art, Gardening, Dance

Introduction: My name is Amb. Frankie Simonis, I am a hilarious, enchanting, energetic, cooperative, innocent, cute, joyous person who loves writing and wants to share my knowledge and understanding with you.