Monitor a VPN Gateway instance

Updated at:

Use Cloud Monitor to track the traffic and health of your VPN Gateway instances. View real-time metrics on the Monitor tab, or set up threshold-triggered alert rules to get notified when traffic exceeds defined limits.

Prerequisites

Before you begin, ensure that you have:

View monitoring data

  1. Log on to the VPN gateway console.

  2. In the top navigation bar, select the region where your VPN Gateway instance resides.

  3. On the VPN Gateways page, click the ID of the target VPN Gateway instance.

  4. On the instance details page, click the Monitor tab.

    The tab displays monitoring data for the last hour by default. To view a different time range, select 3 hours, 6 hours, or 12 hours, or specify a custom range.

    To keep the charts current, turn on Auto-refresh above any line chart. When enabled, the system refreshes monitoring data every minute.

Available metrics

Traffic metrics

MetricDescription
Inbound Packet Rate of VPN GatewayRate at which the VPN Gateway instance receives packets. Unit: packets/s.
Outbound Packet Rate of VPN GatewayRate at which the VPN Gateway instance sends packets. Unit: packets/s.
Inbound Traffic Rate of VPN GatewayRate at which the VPN Gateway instance receives traffic. Unit: bit/s.
Outbound Traffic Rate of VPN GatewayRate at which the VPN Gateway instance sends traffic. Unit: bit/s.
Inbound Bandwidth Usage of VPN GatewayPercentage of bandwidth used for inbound traffic.
Outbound Bandwidth Usage of VPN GatewayPercentage of bandwidth used for outbound traffic.

Connection metrics

MetricDescription
Number of SSL ClientsNumber of clients connected to the VPN Gateway instance through SSL-VPN. Unit: count.

Create a threshold-triggered alert rule

A threshold-triggered alert rule monitors a metric and sends an alert notification when the value exceeds the threshold you define. This helps you respond to traffic anomalies before they affect your users.

  1. Log on to the Cloud Monitor console.

  2. In the left navigation pane, choose Alerts > Alert Rules.

  3. On the Alert Rules page, click Create Alert Rule.

  4. In the Create Alert Rule panel, set Product to vpngw, configure the remaining parameters as needed, and then click OK. For details on parameters not described in this topic, see Create an alert rule.

  5. In the Rule Description section, click Add Rule > Simple Metric.

  6. In the Configure Rule Description panel, configure the following parameters, and then click OK.

    ParameterDescription
    Alert RuleThe name of the threshold-triggered alert rule.
    Metric TypeThe type of the metric for the threshold-triggered alert rule. In this example, Simple Metric is used. For more information about the parameter configurations for different metric types, see Create an alert template. Options: Simple Metric, Composite Metric, Expression, Dynamic Threshold.
    MetricThe metric to monitor. Available options are grouped below by category.
    Chart PreviewA preview of the monitoring chart for the selected metric.

    Gateway traffic metrics

    Metric name
    VpnGateway.rxPkgs
    VpnGateway.txPkgs
    Gateway.rxPkgs
    Gateway.txPkgs
    Gateway.tx.utilization
    Gateway.rx.utilization
    net_rx.rate
    net_tx.rate

    Connection and client metrics

    Metric name
    client.count
    IPSec.connection.bgp_state
    IPSec.connection.rxPkgs
    IPSec.connection.state
    IPSec.connection.txpkgs
    IPSec.connection.rx.rate
    IPSec.connection.tx.rate

    Tunnel metrics

    Metric name
    Tunnel.state
    Tunnel.bgp_state
    Tunnel.rx.bps
    Tunnel.rx.pps
    Tunnel.tx.bps
    Tunnel.tx.pps