Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

HOW TO CHECK FOR UP TIME IN IPSEC VPN TUNNEL

Hello All,

The client has requested to know the uptime in the IPSEC VPN Tunnel.

Sophos Model: XGS4500

Thank you



Added TAGs
[edited by: Erick Jan at 12:52 PM (GMT -7) on 5 Sep 2024]
Parents Reply Children
  • @eFrancis, how is it going be helpful to check the tunnel uptime? are you looking for S2S tunnel details or Remote access tunnel details?

    IPsec has 2 phases; IKE(v1/v2) phase which is larger and child SA phase that is smaller. Both phase1 and phase2 sessions keep rekeying after sometime, based on the rekey values configured in the IPsec.

    In site2site tunnel type, there is no straight way to get the tunnel uptime; you can check ipsec statusall | grep rekey - this gives how much time is left for rekeying for phase1 and phase2 and compare this with what has been configured in the UI.

    In remote access type, you can take a look at UI in Current activities - Live users - it displays the start time of the tunnel.

  • Hi  ,There isn't a direct way to find the tunnel uptime. However, you can check the log viewer -> 'VPN' and filter by the specific tunnel name and see the timestamp of most recent 'Established' status for that specific tunnel .

    Regards,

    Vamshi