Link to home
Start Free TrialLog in
Avatar of kiilaa
kiilaa

asked on

Palo Alto site-to-site vpn monitoring

Hello all,

on A Palo Alto FW after executing "show vpn ike-sa gateway gateway_id" command I receive the output such as below
User generated image
Does the "Established" time suggest that the VPN was down and reestablished at 08:01:55 or does it only mean that rekeying of phase 1 happened at that time due to SA lifetime expiry?
SOLUTION
Avatar of Dan Craciun
Dan Craciun
Flag of Romania image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of kiilaa
kiilaa

ASKER

thanks for your comment. the SA lifetime is 24 hours indeed. A new key is also negotiated when a tunnel is established. from what I understand that output is not telling us the reason for rekey, is that correct?
ASKER CERTIFIED SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of kiilaa

ASKER

thanks Dan
You're welcome.

Glad I could help!