Solved

Juniper SSG140 Interface Traffic Not Appearing in Solarwinds NPM 10.4

Posted on 2013-06-18
2
982 Views
Last Modified: 2013-07-08
Our Solarwinds NPM 10.4 will not show traffic for all interfaces on our Juniper SSG140 Firewall/VPN.  The interfaces show as up/down but they cannot give us statistical traffic information for the VPN tunnels and all other interfaces.  Traffic Stats Not AppearingSolarwinds tech support has indicated that this is because the Interface Indexes are changing sporadically when they should be mapped to static routes on the Juniper.  Juniper support has been unable to provide us with a viable solution to this other than enabling SNMP on the SSG which is enabled.  they have also analyzed the logs and are not sure how to resolve the changing indexes.  Solarwinds has mentioned that if Solarwinds can't resolve they may be able to develop what they referred to as "floating indexes".  That is our longshot.  Has anyone else had any experience with this.  Any help would be much appreciated.  Thanks in advance.  I have attached some screenshots for further clarification.Our Solarwinds NPM 10.4 will not show traffic for all interfaces on our Juniper SSG140 Firewall/VPN.  The interfaces show as up/down but they cannot give us statistical traffic information for the VPN tunnels and all other interfaces.  Solarwinds tech support has indicated that this is because the Interface Indexes are changing sporadically when they should be mapped to static routes on the Juniper.  Juniper support has been unable to provide us with a viable solution to this other than enabling SNMP on the SSG which is enabled.  they have also analyzed the logs and are not sure how to resolve the changing indexes.  Solarwinds has mentioned that if Solarwinds can't resolve they may be able to develop what they referred to as "floating indexes".  That is our longshot.  Has anyone else had any experience with this.  Any help would be much appreciated.  Thanks in advance.  I have attached some screenshots for further clarification.Additional Info
0
Comment
Question by:oriontech2
2 Comments
 
LVL 18

Expert Comment

by:Sanga Collins
ID: 39257895
Are you able to get consistent graphs from any other software like cacti or PRTG? This is the strangest thing I have seen in my years managing juniper devices. PRTG has a free trial and can be easily installed on a windows computer. If it can sucessfully get graphs from your ssg, then the problem is definitely cacti.

In my setup I have noticed tunnel interfaces do not give traffic statistics, but named VPNs do. So all my VPNs that have phase1 and phase2 succesfully connected show me traffic in cacti. Pirmary interfaces, sub interfaces and loopback interfaces also show me traffic.
0
 
LVL 69

Accepted Solution

by:
Qlemo earned 500 total points
ID: 39300505
The official statement from Juniper was, some time back, that tunnel interfaces do not provide the traffic counters needed, so they are useless to monitor via SNMP.

sangamc, can you explain "named VPNs"?
0

Featured Post

Space-Age Communications Transitions to DevOps

ViaSat, a global provider of satellite and wireless communications, securely connects businesses, governments, and organizations to the Internet. Learn how ViaSat’s Network Solutions Engineer, drove the transition from a traditional network support to a DevOps-centric model.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Configuring SonicWALL NS 2600 to work with Barracuda BESS 4 74
Sonicwall routing between VPNs 5 62
Fortigate Question 5 23
Windows Folder Permissions 9 98
As a long-time IT Professional, the most important skill I have developed and consider to be my most valuable tool is Effective Troubleshooting. Step through my problem-solving procedure in this 10-step guide adapted from The Universal Troubleshooti…
Email signature management is something that is often overlooked in many organizations or is simply not implemented effectively. Let's take a look at what methods are available for managing this important piece of corporate branding.
Nobody understands Phishing better than an anti-spam company. That’s why we are providing Phishing Awareness Training to our customers. According to a report by Verizon, only 3% of targeted users report malicious emails to management. With compan…

828 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question