Checking the VPN Real-Time Monitor

The VPN real-time monitor page displays the information of a selected VPN member and its associated VPN connections.

In the NRM VPN view status menu (see VPN View Status) click the Real Time Monitor link for a selected member to display a page with the following information:.

Figure 72
Connection Information for the Selected Member

This page provides detailed real-time information of the list of members and clients connected to the selected member.

If the real-time monitor page shows a connection as type Server with the key management type as unknown, the server might be configured as a site-to-site member of the network but there might not be any active connection between the two servers.

Figure 73
Detailed Information for a SKIP Connection
Figure 74
Detailed Information for an IKE Connection

IKE key management parameters like encryption algorithm, authentication algorithm, and authentication method (Certificate/Pre-shared key/NMAS) are displayed here.

Active Policies: The policies displayed in the lower box on the page are active traffic rules enforced for a connection. Click a traffic rule to see the packets passed because of this traffic rule. If a traffic rule is configured as Deny it won't be displayed here. If the same policy is displayed twice, one of the policies is about to expire and a new SA is being negotiated. The algorithm shown here is used to protect the data traffic.

Figure 75
Policy Statistics for an Active Traffic Rule