Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    IPsec Down notifications

    Scheduled Pinned Locked Moved IPsec
    notificationsipsecmonitor ip
    7 Posts 2 Posters 1.3k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • dragoangelD
      dragoangel
      last edited by dragoangel

      Hi,
      I noticed that I not receive any notifications if IPsec goes down by SMTP. I thought that this must be supported.
      Additionaly there is optional field to ping host inside a IPsec for each Phase2: Automatically ping host, what it purpose? I thought this used for advanced "Up monitoring" if Phase1&2 successful connection not anought. But what a point in this if I doesn't have any IPsec connectivity warnings notifications at all? Or I missed something?
      Thanks in advance.

      1 Reply Last reply Reply Quote 0
      • W
        wickeren
        last edited by

        The ping host option is a way to a keep a phase2 up, by generating “interesting traffic”. Sometimes this can be handy.
        It has nothing to do with monitoring the VPN. I would LOVE a way to monitor the tunnels, preferably on the phase2 level, and being informed when it fails. But so far it seems there is no easy way to do this....

        dragoangelD 1 Reply Last reply Reply Quote 0
        • dragoangelD
          dragoangel @wickeren
          last edited by dragoangel

          @wickeren I'm shocked that this "problem", due pfsense is actually know what up and what is down per each phase! There is dashboard widget that works correct, so create event I think is not so hard to send email. I'm now facing more stupid issue with multi-home (2wans with ddns): another side not try re-resolve dns on failed connection and try use old ip for communication which is wrong

          W 1 Reply Last reply Reply Quote 0
          • W
            wickeren @dragoangel
            last edited by

            @dragoangel
            Probably not, but It hasn’t been made by the developpers yet...
            Maybe someone from Netgate will jump in and explains why.

            dragoangelD 1 Reply Last reply Reply Quote 0
            • dragoangelD
              dragoangel @wickeren
              last edited by dragoangel

              This post is deleted!
              W 1 Reply Last reply Reply Quote 0
              • W
                wickeren @dragoangel
                last edited by

                @dragoangel
                Maybe https://forum.netgate.com/category/30/bounties
                If you really need it and are willing to pay for it.
                Else the best you can do is hope that it will come some time...

                dragoangelD 1 Reply Last reply Reply Quote 0
                • dragoangelD
                  dragoangel @wickeren
                  last edited by dragoangel

                  This post is deleted!
                  1 Reply Last reply Reply Quote 0
                  • First post
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.