Hi and thank you claumakurumure,
Indeed, the information I gathered in the last fews days all directed me thowards the use of SNMP to monitor my interface.
However, I don' t understand much how SNMP Works. I am reading on it and doing test in my Test Environment, I didn' t manage to make it Work yet, but I' m pretty Hard Headed so i won' t give up so easily. But there is some information I can' t find.
I hope you or someone else may answers these simple questions.
1- In order to use SNMP do i really need to have my Distant Wan Int on my Firewall accept Echo replies (PING)?
2- Do I need to check the SNMP box on my Wan Interface on my FortiGate or I am i doing it wrong in doing So?
3- If I activate SNMP Will the SNMP messages be transfered in Raw data on the Internet or will it use the Automatic tunnel that is created between the FortiGate and the FortiManager?
----------------------------------------------------------------------------------
---- edit discovered information after some work done -----------------
----------------------------------------------------------------------------------
Hi everyone,
I was working on the SNMP link with FortiManager and My FortiGate to try to configure the SNMP and I noticed something strange. I tried to add in my FortiGate the same community I configured on my FortiManager. However, it warns me that this community already exists. But doesn' t show it to me!!!
After some research I believe that the SNMP is automatically configured between my FortiGate and the FortiManager once they synchronize. I also believe that if this the case then the information sent via the SNMP message indeed use the build in VPN tunnel that is created between the manager and the managed unit.
Alright so my question is this one. If i am able to receive the alarms when my FortiGate memory usage is higher that it should be and if i can' t use the SNMP how do i manage to Monitor if my T1 link goes down.
I have the idea of creating a ping server that pings every 10 seconds my devices and if the server doesn' t receive an echo reply 3 times in a row (I will have a 30 second delay) then the link is down and i will tell my server send me an email or an SMS.
Did anyone managed to do this with their Devices? Mines are running on FortiOs 4.0 mr2. If not, i guess i will need to program my ping server.
Thanks again for your help
Charles-Olivier