Best solution for monitoring site-to-site on an ASA 5520

Unanswered Question
Jan 30th, 2007

I'd like to monitor the status of our IPsec site-to-site tunnels on our ASA 5520s. In the past on other devices we were able to nail the tunnels up and use SNMP traps to monitor.

Currently the only solution I've found is to add a host to the tunnel running a constant ping, which strikes me as a bit of a hack.

Has anyone found a more elegant solution?



I have this problem too.
0 votes
  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
merabtavart Fri, 07/22/2011 - 01:52


Advantage   of VPNTTG over other SNMP based monitoring software’s is  following:   Other (commonly used) software’s are working with static OID  numbers,   i.e. whenever tunnel disconnects and reconnects, it gets  assigned a  new  OID number. This means that the historical data, gathered  on the   connection, is lost each time. However, VPNTTG works with VPN  peer’s  IP  address and it stores for each VPN tunnel historical  monitoring  data  into the SQL server and into the RRD (Round Robin  Database) file.



This Discussion