Hi All I have posted this in the VPN discussion but I don't know if there is a more appropriate forum topic. Please let me know! At work, we have a "IPsec/Auto Key (IKE)" VPN setup on our firewall. The Phase 1 is called "Phase1_VPN". The Phase 1 Local Interface is "Phase1_LocalInterface". When I run snmpwalk, I get the following output.
[ul]Therefore, I can use snmp to record network traffic on this interface & tunnel using the following OIDs.
[ul]However, I would like to understand the relationship between the network traffic statistics reported on "Phase1_LocalInterface" & "Phase1_VPN". Is all traffic that passes through "Phase1_VPN" also shown on "Phase1_LocalInterface" and hence should "Phase1_VPN" traffic be a subset of "Phase1_LocalInterface"? This appears to be the case for OutOctets as the network monitoring system shows Phase1_VPN out traffic as always lower than Phase1_LocalInterface. However, the networking monitoring system shows Phase1_VPN in traffic to be higher than Phase1_LocalInterface traffic (5 Mbps rather than 200 Kbps). This doesn't make any sense to me! Is anybody able to help explain what we are seeing? Thanks John
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.