Multi-WAN: WAN goes down - No notification received!
-
Hi,
I have an SG-3100 with v23.01. Dual WAN gateway setup with primary (Tier 1) and backup (Tier 2) set. I frequently receive email messages when a WAN line is brought down due to packet loss or latency exceeding the high threshold. However, I was surprised when I unplugged a WAN cable in a test, but did not receive an email notification about the downed WAN line. When I click to test the SMTP settings I do receive an email, so that appears to confirm it's working as expected.
The system does failover properly, but having a WAN line down is a catastrophic error. Shouldn't we receive notification for such an event?
Speaking of which, in the Gateway configuration of the member WANs, there are low and high thresholds for Packet Loss and Latency. I have never received a notificaiton for when a Low threshold was exceeded, only a High one, which triggers the line being brought down. Shouldn't I get a notification when the Low threshold is exceeded? Seeing Low threshold events could allow me to see impending problems in advance of a triggering event that brings a line down. Otherwise, what is the point of setting a Low threshold? The way things work now, I get no clue a line is dirty until, Bam, a line suddenly goes down when it exceeds the High threshold. I can't find anything in the docs where such notifications can be set.
Further, the Notifications doc says:
"The firewall can notify administrators of important events and errors by displaying an alert in the menu bar, indicated by the fa-bell icon."However, I have never seen such a menu bar notification when a WAN goes down. And one of my lines goes down on a daily basis. I've seen notification that a certificate expired, but never a downed WAN. Is a WAN going down not an "important event or error"?
Am I missing something?
Thanks.
-
Enable daily notifications of expired and soon-to-expire certificates
is daily notification. It is another than WAN problem.When you WAN id down, how to send email? Who resolve DNS address? How to validate the SSL/TLS certificate presented by the server
-
@chitchat Do u have a FailOver setup as Default gw?
Regards!!!