WAN Link Balancing: Customize Health-Check Parameters
Would like ability to configure the uplink monitoring health check parameters. Such as change the ping time threshold to other than 15 secs. With multiple interfaces we'd like to choose which interfaces should ping which custom hosts.
I wish we had more control over the checkip. TCP instead of ICMP would be nice to avoid a DOS attack if I wanted to use my endpoint as the checkip. I can't because my 26 ASG's would bring down my 425 ASG. 7.3 I had to put the check ip in 10 times with commas to get the failover time to be a minute. Why can't we have a timeout value for the checkip. Timeout, the checkip interval, how many times it check...
Now, in 7.4, both interfaces check the same checkip, and if it isn't reachable, you have no tunnel. Even if your interfaces and endpoints are all up! I liked it better that the checkip was only over the primary link, so when it came backup, it would fail back. 7.4 design is a nightmare.
We have extended the Health-Check parameters starting with ASG 8.3 and now in UTM9. Click the “wrench” button after you disable automatic monitoring, and you can then configure many specific items. Regarding per-Interface host checking, this is possible, yet a bit advanced.
Bind the host(s) you want to the interface(s) you want to check on via the definitions section in advanced, and then place them in the monitoring list. The system will be smart enough to skip over hosts not bound to their respective uplinks for monitoring purposes and your goal is reached. Enjoy.
I'd like it to also have a time threshold setting; e.g. if it goes down, wait X minutes before sending an email.