View the Tunnel Status ()
Focus
Network Security

View the Tunnel Status ()

Table of Contents


View the IPSec VPN Tunnel status of the firewalls in PAN-OS.
  1. Select NetworkIPSec Tunnels.
  2. View the Tunnel Status.
    • Green indicates a valid IPSec SA tunnel.
    • Red indicates that IPSec SA isn’t available or has expired.
  3. View the IKE Gateway Status.
    • Green indicates a valid IKE phase-1 SA.
    • Red indicates that IKE phase-1 SA isn’t available or has expired.
  4. View the Tunnel Interface Status.
    • Green indicates that the tunnel interface is up.
    • Red indicates that the tunnel interface is down, because tunnel monitoring is enabled and the status is down.
    To troubleshoot a VPN tunnel that isn’t yet up, see Interpret VPN Error Messages.