cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1225
Views
0
Helpful
1
Replies

VPN monitor script

sprocket10
Level 2
Level 2

We have 819 4G routers and I am after a script to monitor the VPN tunnel is always alive.

 

- ping a remote server, ie 172.16.1.1 and if it times out, but the pings to 8.8.8.8 are still live, to only shutdown and enable the site-to-site vpn.

 

I have looked at other scripts people have and I cant find the one I am after for site-to-site vpn

 

I ideally don't want to reload the cellular interface as this is slow and also may cause issues with our dual sims if the unit is running from the secondary sim and will cause it to switch back to the primary and then failover to the secondary (if the primary sim allowance is used or no signal)

1 Accepted Solution

Accepted Solutions

Dan Frey
Cisco Employee
Cisco Employee

The request at this post is very similar to yours.   You will need to set up IPSLA to the far end ip address and track it.   If the tracked object goes down then perform a series of cli steps to bounce the vpn tunnel.

https://supportforums.cisco.com/discussion/12343051/router-reload-or-shutnoshut-when-l2tp-tunnel-goes-down

View solution in original post

1 Reply 1

Dan Frey
Cisco Employee
Cisco Employee

The request at this post is very similar to yours.   You will need to set up IPSLA to the far end ip address and track it.   If the tracked object goes down then perform a series of cli steps to bounce the vpn tunnel.

https://supportforums.cisco.com/discussion/12343051/router-reload-or-shutnoshut-when-l2tp-tunnel-goes-down