Update Networking/Sophos/Site-to-Site VPNs/IPSec/Automatic Tunnel Resetting.md
This commit is contained in:
@ -8,12 +8,23 @@
|
||||
## Configure Sophos XGS Firewall ACLs
|
||||
You need to configure a user account that will be specifically used for leveraging the API controls that allow resetting the VPN tunnel(s). At this stage, you need to log into your Sophos XGS Firewall
|
||||
|
||||
## Choose a Server to Put Script On
|
||||
It is important to choose a server/device that is able to communicate with the devices on the remote end of the tunnel. If it cannot ping the remote device(s), it will assume that the tunnel is offline and do an infinite loop of restarting the VPN tunnel.
|
||||
|
||||
## Prepare the Script Folder
|
||||
You need a place to put the script (and if on Windows, `curl.exe`). Follow the instructions specific to your platform below:
|
||||
|
||||
=== "Windows"
|
||||
Download `curl.exe` from this location: [Download](https://curl.se/windows/dl-8.10.0_1/curl-8.10.0_1-win64-mingw.zip) and place it somewhere on the operating system, such as `C:\Scripts\VPN_Tunnel_Checker`. Then copy this script into that same folder and call it `Tunnel_Checker.ps1` with the content below:
|
||||
|
||||
!!! note "Curl Files Extraction"
|
||||
You will want to extract all of the files included in the zip file's `bin` folder. Specifically, copy the following files into the `C:\Scripts\VPN_Tunnel_Checker` folder:
|
||||
|
||||
- `curl.exe`
|
||||
- `curl-ca-bundle`
|
||||
- `libcurl-x64.def`
|
||||
- `libcurl-x64.dll`
|
||||
|
||||
``` powershell
|
||||
function Reset-VPN-Tunnel {
|
||||
Write-Host "VPN Tunnel Broken - Bringing VPN Tunnel Down..."
|
||||
|
Reference in New Issue
Block a user