Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements
Step-by-Step Configuration and Troubleshooting Best Practices for the NGFW, NGIPS and AMP Technologies A Visual Guide to the Cisco Firepower Threat Defense (FTD)
Community Member

Cisco ASA IPsec Tunnel Monitoring

I need to monitor a few IPsec tunnels running on an ASA5510 running IOS version 8.4(2). I'd like to create traps in Solarwinds that will alert me when these tunnels start/stop. Has anyone done anything similar? If yes, can you send me the MIBs and steps you took to make this work?

 

Thanks!

2 REPLIES

Not sure about the MIB side

Not sure about the MIB side (my SNMP expert is out today), but for syslog messages, the key one for us has been IKE "New Phase 1".  The individual SA messages and phase 2 key renegotiations are too noisy to be helpful.

   %ASA-5-713041: IP = XXX, IKE Initiator: New Phase 1, ...

-- Jim Leinweber, WI State Lab of Hygiene

No MIB is needed. I too have

No MIB is needed. I too have trapped on that and works like a champ in SW too.
175
Views
0
Helpful
2
Replies
CreatePlease to create content