Skip to main content
one_co_il
New Member
November 12, 2018
Question

Link-Monitor on Ipsec Tunnel

  • November 12, 2018
  • 1 reply
  • 12196 views

Hi

I want to setup Link-monitor on my VPN tunnel.

can't understand what to config at the Gateway IP.

it is a site to site (FG to FG Tunnel).

    1 reply

    Toshi_Esumi
    SuperUser
    SuperUser
    November 12, 2018

    Regularly the gateway IP is the tunnel interface IP on the other end, while the destination IP can be anything behind it.

    one_co_il
    one_co_ilAuthor
    New Member
    November 12, 2018

    toshiesumi wrote:

    Regularly the gateway IP is the tunnel interface IP on the other end, while the destination IP can be anything behind it.

    I understand, actually when i setup IPsec to AWS it works fine because the interface was setup with IP

    when i setup site to site VPN the interface has no IP

    IP is 0.0.0.0

    Remote IP to 0.0.0.0

     

     

    Toshi_Esumi
    SuperUser
    SuperUser
    November 12, 2018

    You should set interface IPs on both ends of the tunnel if both sides are interface mode/route-base IPSec. Otherwise you can't use features like link-monitor since the default route must be routing to the outside of the tunnel.