Help Docs

Azure VPN Server Configuration monitoring

An Azure VPN Server Configuration defines the authentication methods, protocols, and certificates used by point-to-site (P2S) VPN gateway deployments. Site24x7 monitors VPN Server Configurations to help you track certificate expiry and configuration status, giving you early warnings before expired certificates disrupt client authentication.

Setup and configuration

Adding an Azure VPN Server Configuration monitor while configuring a new Azure monitor

  1. Log in to your Site24x7 account.
  2. Go to Cloud > Azure > Add Azure Monitor.
  3. On the Add Azure Monitor page, select Azure VPN Server Configuration from the Service/Resource Types drop-down menu.

Adding an Azure VPN Server Configuration monitor to an existing Azure monitor

  1. Go to Cloud > Azure, select your Azure monitor, then go to any of the dashboards on the left pane.
  2. Click the hamburger icon and select Edit to open the Edit Azure Monitor page.
  3. Select the relevant Subscriptions and Resource Groups, select Azure VPN Server Configuration from the Service/Resource Types drop-down menu, and click Save.

After successful configuration, go to Cloud > Azure, click the required Azure monitor, and select Azure VPN Server Configuration to view the discovered VPN server configurations.

It will take 15–30 minutes to discover new Azure resources. For immediate discovery, go to the Infrastructure Dashboard of the Azure monitor, hover over the hamburger icon, and select Discover Now.

Polling frequency

Site24x7 collects VPN Server Configuration performance metrics every five minutes and displays the minute-by-minute status.

Performance metrics

MetricDescriptionStatisticUnit
State Indicates the current operational status of the VPN Server Configuration resource. Average Count
Expired Cert Count The number of expired certificates (root or client) associated with this VPN server configuration—a non-zero value may cause client authentication failures. Average Count

Configuration attributes

The following attributes are collected when the configuration changes and are displayed on the Metadata tab:

AttributeDescription
Subscription The Azure subscription in which this VPN Server Configuration is deployed.
Resource Group The Azure resource group containing this VPN server configuration.
Location The Azure region where this VPN server configuration is deployed.
Name The display name of the VPN Server Configuration resource.
Tags The tags applied to the VPN server configuration resource.
Provisioning State The current provisioning state of the VPN server configuration (for example, Succeeded, Updating, or Failed).
VPN Protocols The VPN tunneling protocols supported by this configuration (IKEv2, OpenVPN, or SSTP).
VPN Authentication Types The authentication types configured for this VPN server (Certificate, RADIUS, or Azure AD).
RADIUS Server Address The address of the RADIUS server used for authentication, if configured.
Azure AD Tenant The Azure AD tenant used for authentication, if configured.
Root Cert Count The number of trusted root certificates configured for certificate-based authentication.

Certificates

Each root and client certificate configured for the VPN server is monitored individually, with the following configuration attributes displayed on the Metadata tab:

AttributeDescription
Days to Expiry The number of days remaining until the certificate expires.
Not After The expiration date of the certificate.
Certificate Purpose The purpose of the certificate (Root or Client).
Certificate Availability Indicates whether the certificate is currently valid and available.
Name The name of the certificate.
Unique ID The unique identifier of the certificate.

Threshold configuration

Global configuration

  1. In the Site24x7 web client, go to Admin > Configuration Profiles > Threshold and Availability (+).
  2. Click Add Threshold Profile and select Azure VPN Server Configuration as the Monitor Type.
  3. Set threshold values for any of the performance metrics listed above. All metrics support anomaly detection.

Monitor-level configuration

  1. Go to Cloud > Azure, select the Azure monitor, and click Azure VPN Server Configuration.
  2. Select a resource, click the hamburger icon, and select Edit.
  3. Configure threshold values using the Threshold and Availability option and click Save.

In addition to performance metric thresholds, the following configuration change alerts are available:

  • Provisioning State change: Alerts you when the configuration provisioning state changes

Azure Resource Health alerts are also available:

  • Resource Unavailable: Alerts you when Azure reports the resource as unavailable
  • Resource Status Unknown: Alerts you when the resource health state is unknown

IT Automation

Site24x7's IT Automation enables you to define automated remediation actions that are triggered by alert events for this monitor—for example, notifying a team channel or invoking a webhook when a threshold is breached. Learn how to configure IT Automation for a monitor.

Summary

The Summary tab displays performance data organized by time for the metrics listed above, with the Expired Cert Count metric prominently featured.

To view the summary, go to Cloud > Azure, select the Azure monitor, click Azure VPN Server Configuration, select a resource, and click the Summary tab.

A Forecast tab is also available for all metrics, providing predictive trend analysis based on historical data.

Licensing

Each Azure VPN Server Configuration monitor consumes one basic monitor license.

WHATS NEW ENTRY

Introducing Azure VPN Server Configuration monitoring

Monitor your Azure VPN Server Configurations with Site24x7 to track certificate expiry and configuration status from a single dashboard. Set threshold alerts on expired certificate counts, catch authentication issues before they impact remote users, and receive automated notifications when your configuration changes.

Was this document helpful?

Would you like to help us improve our documents? Tell us what you think we could do better.


We're sorry to hear that you're not satisfied with the document. We'd love to learn what we could do to improve the experience.


Thanks for taking the time to share your feedback. We'll use your feedback to improve our online help resources.

Shortlink has been copied!