![]() ![]() Status of tunnel VPN LOCAL PEER: eval(text,"&") REMOTE PEER: eval(text,"&SNMP.VALUE. Status of tunnel VPN LOCAL PEER: eval(text,"&") REMOTE PEER: eval(text,"&") = "DOWN" Snmpwalk AFTER tearing down the VPN tunnel (3 entries) Snmpwalk before tearing down the VPN tunnel (4 entries) This object cannot be used to create a MIB table row. This object can be used to bring the tunnel down by setting value of this object to destroy(2). Good morning, I'm setting up the firewall ASA 5515-X firewall, I need to monitor the tunnel status or the local and remote VPN IP, I wonder if there is any OID or any other way you could use the tunnel status when you are DOWN or UP, the value is not updated and simulated or destroys the line, monitoring SNMP using IBM Tivoli Network Manager (ITNM) to no avail, or the tunnel when DOWN and deleting the line follows the example below, thank you for now. Refer to Monitoring and Maintaining VPN session section of VPN Tunnel Management to monitor and maintain the VPN session. Snmp-server enable traps ipsec too-many-sas Snmp-server enable traps ipsec tunnel stop Snmp-server enable traps ipsec tunnel start The SNMP framework consists of three parts: An SNMP manager: The system used to control and monitor the activities of network devices using SNMP. Snmp-server enable traps ipsec cryptomap detach If Table is polled, you can see the admin or protocol status on that interface. Snmp-server enable traps ipsec cryptomap attach A VPN tunnel can be monitored just like any other interface. Snmp-server enable traps ipsec cryptomap delete Snmp-server enable traps ipsec cryptomap add Snmp-server enable traps isakmp tunnel stop Snmp-server enable traps isakmp tunnel start Snmp-server enable traps isakmp policy delete Snmp-server enable traps isakmp policy add These are the traps that are available from CISCO-PORT-SECURITY-MIB: Statistics can be collected and monitored via standards-based SNMP techniques (get operations) to query objects defined in the NHRP MIB. These are the traps that are available from CISCO-IPSEC-MIB: The Cisco NHRP MIB feature introduces support for the NHRP MIB, which helps to manage and monitor the Next Hop Resolution Protocol (NHRP) via Simple Network Management Protocol (SNMP). These are the traps that are available from CISCO-IPSEC-FLOW-MONITOR-MIB: ![]() You can also set up traps for the tunnel. # snmpget ifDescr.3 ifOperStatus.3 ifAdminStatus.3 This is an example of snmpwalk on ifTable: A VPN tunnel can be monitored just like any other interface. ![]()
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |