I have the following requirement.
We plan to create a Site-to-Site VPN with an extranet partner using VPN 3000 series machines at both ends.
We want to have a report of the connection attempts and duration (IP address wise) from the extranet partner site to our internal network on a regular basis. We are not interested in any user based authentication and would prefer passive monitoring, like the use of IDS (located at the inside network) to obtain the required information.
Any Pros/Cons / Workability for the above solution? Can someone suggest alternate options?
Thanks in advance