Platform GCP
Activity Upgrade

Check Site-to-Site VPN Tunnel Connectivity

Use the Check Connectivity button to trigger a real-time connectivity check against the tunnel to identify whether the tunnel is currently active or idle. Unless you click the on-demand connectivity check button, a check across all tunnels, available across all onboarded devices, occurs once an hour.


 
  • Security Cloud Control runs this connectivity check command on the ASAFTD to determine if a tunnel is active or idle:

    
    show vpn-sessiondb l2l sort ipaddress
    
    

  • Model ASA device(s) tunnels will always show as Idle.

To check tunnel connectivity from the VPN page:

Procedure

1

In the Security Cloud Control platform menu, choose Products > Firewall.

2

In the left pane, choose Manage > Secure Connections > Network Connections > Site to Site VPN.

3

Search and filter the list of tunnels for your site-to-site VPN tunnel and select it.

4

In the Actions pane at the right, click Check Connectivity.