LAN Tunnels
The LAN Tunnels card displays the list of LAN tunnels along with the number and health status of LAN tunnels for a gateway.
Figure 1: LAN Tunnels—Summary Card
When the following alerts are generated, the tunnel is down, the health status is poor, and the health reason is that the tunnel is not established.
-
Gateway Tunnel Flap Detected
-
Gateway IPSec SA Establishment Failure
You can click on the expand icon on the LAN Tunnels card to view additional details for each LAN tunnel. The expanded view of LAN Tunnels card displays the following details:
|
Parameter |
Description |
|---|---|
|
Name |
Displays the name of the LAN tunnel along with:
|
|
Gateway |
Displays the name and role of the gateway. It can be leader, isolated leader, or member. |
|
Encapsulation |
Displays the type of encapsulation. For example, IPSec, GRE, or VxLAN. |
|
Source IP Address |
Displays the source IP address. |
|
Destination Device |
Displays the MAC address of the destination device. |
|
Destination IP Address |
Displays the source IP address. |
You can filter LAN tunnels depending on your criteria. You can either use keywords (name, gateway model, or any other device information) in the search bar to search any specific LAN tunnel(s).
Click the customize columns
icon to adjust the visibility and position of columns in the LAN Tunnels table.
Figure 2: LAN Tunnels Expanded View
You can also use the quick filters to filter LAN tunnels as per status (Up or Down) and encapsulation type (IPSec, GRE, or VxLAN) to search any specific LAN tunnel(s).
IPSec LAN Tunnels
To view the details of LAN tunnels for IPsec encapsulation, filter the tunnels by selecting IPsec as the encapsulation type, and then click on a tunnel listed on the LAN Tunnels page.
The IPSec LAN tunnel page displays the following details:
-
Properties—The Properties section displays the following details:
-
Mode—Displays the mode of encapsulation.
-
Encapsulation—Displays the type of encapsulation.
-
Destination Device—Displays the MAC address of the destination device.
-
Destination IP Address—Displays the IP address of the destination device.
-
Source IP Address—Displays the IP address of the source device.
-
SSID—Displays the name of the SSID(s).
-
Uptime—Displays the total time duration that the device has been operational.
-
Authentication—Displays the type of authentication.
-
Encryption—Displays the type of encryption.
-
MTU—Displays the Maximum Transmission Unit (MTU) for the tunnel.
-
In SPI—Displays the inward SPI for the tunnel.
-
Out SPI—Displays the outward SPI for the tunnel.
-
Last Change Reason—Displays the reason for the last change of the tunnel.
-
Last Down Reason—Displays the reason for the last down state of the tunnel.
-
Last Key Recorded BY Gateway—Displays the last key recorded by the gateway.
-
Last Connected—Displays the time when the device was last connected.
-
Status—Displays the operational state of the IPSec LAN tunnel using a color-coded view. The operational states displayed in color-coded view are Up, Partial, Down, Survivability, and Unknown.
-
-
Usage—The Usage graph displays the received and transmitted throughput usage over the last three hours.
Figure 3: IPSec LAN Tunnel
GRE LAN Tunnels
To view the details of LAN tunnels for GRE encapsulation, filter the tunnels by selecting GRE as the encapsulation type, and then click on a tunnel listed on the LAN Tunnels page.
The GRE LAN tunnel page displays the following details:
-
Mode—Displays the mode of encapsulation.
-
Encapsulation—Displays the type of encapsulation.
-
Tunnel ID—Displays the ID of the tunnel.
-
Tunnel IP Address—Displays the IP address of the tunnel.
-
MTU—Displays the Maximum Transmission Unit (MTU) for the tunnel.
-
Uptime—Displays the total time duration that the device has been operational.
-
Destination Device—Displays the MAC address of the destination device.
-
Destination IP Address—Displays the IP address of the destination device.
-
Source Name—Displays the MAC address of the source.
-
Source IP Address—Displays the IP address of the source.
-
SSID—Displays the name of the SSID(s).
-
Last Connected—Displays the time when the device was last connected.
Figure 4: GRE LAN Tunnel
VxLAN LAN Tunnels
To view the details of LAN tunnels for VxLAN encapsulation, filter the tunnels by selecting VxLAN as the encapsulation type, and then click on a tunnel listed on the LAN Tunnels page.
The VxLAN tunnel page displays the following details:
-
Properties—The Properties section displays the following details:
-
Encapsulation—Displays the type of encapsulation.
-
VNI—Displays the Virtual Network Identifier (VNI) of the VxLAN.
-
Destination Device—Displays the MAC address of the destination device.
-
Destination IP Address—Displays the IP address of the destination device.
-
Source IP Address—Displays the IP address of the source device.
-
Status—Displays the operational state of the VxLAN tunnel using a color-coded view. The operational states displayed in color-coded view are Up, Partial, Down, and Unknown.
-
-
Usage—The Usage graph displays the received and transmitted throughput usage over the last three hours.
Figure 5: VxLAN Tunnel