Skip to main content
BenMarch
New Member
March 28, 2022
Question

Find the mode (main or aggressive) of a vpn with SNMP

  • March 28, 2022
  • 2 replies
  • 1761 views

Hello everyone,
During my work, I have to create alerts in zabbix. One of them gives me an alert when one of my VPN interfaces is down. A problem comes to me quickly: when I have interfaces in aggressive mode, the alert is done while the state change is normal.
Can you tell me how I can find the mode of a VPN thanks to the OID of SNMP?
I already found the FORTNET-MIB.txt but either I implement it wrong or there is something else.

Sorry for my English.

 

2 replies

GusTech
New Member
March 28, 2022

Hi, Ben!

- Did you download the mib file from the fgt? 

fgVpnTunEntStatus OBJECT-TYPE     SYNTAX      INTEGER { down(1), up(2) }     MAX-ACCESS  read-only     STATUS      current     DESCRIPTION          "Current status of tunnel (up or down)"     ::= { fgVpnTunEntry 20 }

 Can you use the fgVpnTunEntStatus and get correct up/down

BenMarch
BenMarchAuthor
New Member
March 29, 2022

Hello GusTech,
I apologize in advance. I think I misspoke.

I can see the state of my firewall, what I can't see is if the firewall is in "aggressive mode" or in "main mode". I was wondering if with the MIB you can see that.

Sorry for my English.

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!