general query on vpn tunnel activity log

0

Hey There, we have vpn tunnel activity logs enabled on some of our vpn tunnels and the logging works fine for the most part but while checking an issue we noticed that some tunnels have between 6 to 10 minute gaps with no activity at all in the logs, just trying to figure out if this is normal behavior because of no requests or the tunnel being in some sort of idle state The vpn itself is a single tunnel vpn with no acceleration enabled, it has static routing and DPD timeout is 60 seconds with an action set to none if there anything else required please let me know any info in regards to this would be of great help to us Thanks in advance Darren

dlakes
질문됨 일 년 전284회 조회
1개 답변
1

Hi Darren,

This is interesting. This "could" be the appropriate logging depending on the traffic that is sent (data transfer, phase1/2 messages, etc..). It would be interesting to see if gaps are still seen with some sort of keepalives, such as on prem to EC2 ICMP or something similar.

Just for reference, this is what is captured in the VPN logs when this is enabled. https://docs.aws.amazon.com/vpn/latest/s2svpn/log-contents.html

AWS
답변함 일 년 전

로그인하지 않았습니다. 로그인해야 답변을 게시할 수 있습니다.

좋은 답변은 질문에 명확하게 답하고 건설적인 피드백을 제공하며 질문자의 전문적인 성장을 장려합니다.

질문 답변하기에 대한 가이드라인