There are a couple of common reasons why Auvik’s internet connection check (aka cloud ping) might not begin to monitor an internet connection automatically.
ICMP is blocked
Auvik’s cloud ping service uses ICMP echoes as a “heartbeat test” to determine whether or not the firewall’s WAN interface has a successful connection to the internet.
It’s common practice for network administrators—and a default setting on many firewalls—to block ICMP echo requests from hosts on the Internet (i.e., from publicly addressable address space).
Therefore, to make use of Auvik’s internet connection check, you’ll need to allow ICMP from Auvik’s network address translation (NAT) gateway.
The firewall isn’t fully discovered
Your Auvik collector is deployed on a LAN. Therefore, it initially only associates your firewall with (possibly one of) its private LAN IP addresses.
Auvik attempts to discover your firewall’s WAN IP address(es) using data returned from SNMP. If we're unable to retrieve the address, the Internet connection won’t be checked automatically.
Workaround
Explicitly set up the cloud ping check to ping your firewall’s WAN IP address(es). See the image below for an example where your public static IP address is 1.2.3.4.
If your firewall has multiple WAN IP addresses, you’ll need to create a separate cloud ping service for each.
Clearing alerts after an Internet Connection Check target changes
If the public IP address monitored by an Internet Connection Check changes, an alert associated with the previous target may remain active even though that target is no longer being monitored. This can make the alert appear orphaned.
Update the Internet Connection Check
- Open the site or tenant where the Internet Connection Check is configured.
- Locate the Internet Connection Check service.
- Edit the service and replace the old target IP address with the current public IP address.
- Save the change.
- Confirm that the new target is responding and the check is reporting normally.
For more information, see How do I start, stop, add, edit, or delete monitoring for services?.
Dismiss the previous active alert
After confirming that the new target is being monitored:
- Open All Alerts.
- Filter or search for the affected Internet Connection Check alert.
- Confirm that the alert refers to the previous target or no longer represents an active condition.
- Select the alert and click Dismiss.
- Confirm the dismissal.
Do not dismiss the alert until you have confirmed that the new Internet Connection Check is configured and reporting normally.
For more information, see How do I dismiss notifications?.
Verify the new check
After updating the target:
- Confirm the new IP address reports as available.
- Review the check history or current service status.
- Confirm that new alert notifications are generated and cleared as expected.
- If the site has multiple Internet connections, verify that each connection has the correct target and alert scope.
If the old alert cannot be dismissed, or alerts continue to reference a target that no longer exists, contact Auvik Support with the site name, old and new target IP addresses, alert name, and alert timestamps.
