Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Gateway 'DHCP_Port2_GW' is Down error

I am receiving email alerts daily from my Sophos XG115 hardware device that the Gateway 'DHCP_Port2_GW' is Down. Almost exactly 1 minute later I get another message saying it is back up. The VPN tunnels don't fail during this time and the IP Phones don't reset so I assume the internet access is still up.

Any idea what could be causing this or where to start troubleshooting?



This thread was automatically locked due to age.
Parents
  • Check the dgd.log in /log/ or the logviewer.

    Basically this means, the dgd (dead gateway detection) could not reach the peer via Ping (Monitoring).

    If the IPsec did not fail, it could be because your monitoring host, you selected, went unreachable. 

  • Is there a way to disable this feature in the Sophos or to at least change its parameters?

  • FormerMember
    0 FormerMember in reply to Ricky Stiles

    Hi ,

    If only one failover condition is configured as ping the gateway IP address, try to add one more failover condition to ping some external IP address or use a TCP connection on port 80.

    To configure failover conditions, do as follows:

    1. Click Add to add a new failover rule. You can also edit an existing rule.
    2. Enter the details for the rule.

      This screenshot shows an example rule. The rule states that if XG Firewall can't ping the gateway IP, 172.16.16.15, or establish a TCP connection on port 80 to 4.2.2.2, the gateway is considered down.

Reply
  • FormerMember
    0 FormerMember in reply to Ricky Stiles

    Hi ,

    If only one failover condition is configured as ping the gateway IP address, try to add one more failover condition to ping some external IP address or use a TCP connection on port 80.

    To configure failover conditions, do as follows:

    1. Click Add to add a new failover rule. You can also edit an existing rule.
    2. Enter the details for the rule.

      This screenshot shows an example rule. The rule states that if XG Firewall can't ping the gateway IP, 172.16.16.15, or establish a TCP connection on port 80 to 4.2.2.2, the gateway is considered down.

Children
No Data