• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

IPsec Down notifications

IPsec
notifications ipsec monitor ip
2
7
1.2k
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • D
    dragoangel
    last edited by dragoangel Oct 25, 2019, 8:12 AM Oct 25, 2019, 8:10 AM

    Hi,
    I noticed that I not receive any notifications if IPsec goes down by SMTP. I thought that this must be supported.
    Additionaly there is optional field to ping host inside a IPsec for each Phase2: Automatically ping host, what it purpose? I thought this used for advanced "Up monitoring" if Phase1&2 successful connection not anought. But what a point in this if I doesn't have any IPsec connectivity warnings notifications at all? Or I missed something?
    Thanks in advance.

    1 Reply Last reply Reply Quote 0
    • W
      wickeren
      last edited by Oct 26, 2019, 11:38 AM

      The ping host option is a way to a keep a phase2 up, by generating “interesting traffic”. Sometimes this can be handy.
      It has nothing to do with monitoring the VPN. I would LOVE a way to monitor the tunnels, preferably on the phase2 level, and being informed when it fails. But so far it seems there is no easy way to do this....

      D 1 Reply Last reply Oct 26, 2019, 11:40 AM Reply Quote 0
      • D
        dragoangel @wickeren
        last edited by dragoangel Oct 26, 2019, 11:44 AM Oct 26, 2019, 11:40 AM

        @wickeren I'm shocked that this "problem", due pfsense is actually know what up and what is down per each phase! There is dashboard widget that works correct, so create event I think is not so hard to send email. I'm now facing more stupid issue with multi-home (2wans with ddns): another side not try re-resolve dns on failed connection and try use old ip for communication which is wrong

        W 1 Reply Last reply Oct 26, 2019, 11:47 AM Reply Quote 0
        • W
          wickeren @dragoangel
          last edited by Oct 26, 2019, 11:47 AM

          @dragoangel
          Probably not, but It hasn’t been made by the developpers yet...
          Maybe someone from Netgate will jump in and explains why.

          D 1 Reply Last reply Oct 26, 2019, 11:49 AM Reply Quote 0
          • D
            dragoangel @wickeren
            last edited by dragoangel Oct 26, 2019, 11:49 AM Oct 26, 2019, 11:49 AM

            This post is deleted!
            W 1 Reply Last reply Oct 26, 2019, 11:53 AM Reply Quote 0
            • W
              wickeren @dragoangel
              last edited by Oct 26, 2019, 11:53 AM

              @dragoangel
              Maybe https://forum.netgate.com/category/30/bounties
              If you really need it and are willing to pay for it.
              Else the best you can do is hope that it will come some time...

              D 1 Reply Last reply Oct 26, 2019, 11:56 AM Reply Quote 0
              • D
                dragoangel @wickeren
                last edited by dragoangel Oct 26, 2019, 12:01 PM Oct 26, 2019, 11:56 AM

                This post is deleted!
                1 Reply Last reply Reply Quote 0
                2 out of 7
                • First post
                  2/7
                  Last post
                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.