Microsoft Azure Virtual Network Gateway


Microsoft Azure Virtual Network Gateway - An Overview

Virtual Network Gateway service provided by Microsoft Azure, allows to send encrypted traffic over the public internet between an Azure virtual network and an on-premises location. Applications Manager's Azure Virtual Network Gateway monitoring tool, facilitates the effective tracking of many key performance metrics of the virtual network gateways. It supports both ExpressRoute Gateway and VPN Gateway types.

Creating a new Microsoft Azure Virtual Network Gateway Monitor

To learn how to create a new Microsoft Azure Virtual Network Gateway Monitor, click here.

Monitored Parameters

Navigate to the Category View by clicking the Monitors tab. Hover over 'Child Monitors' under Microsoft Azure in the Cloud Apps table, and then select the Virtual Network Gateways monitor from the displayed tooltip. This action will display the bulk configuration view for Azure Virtual Network Gateway in three tabs:

  • Availability tab gives the Availability history for the past 24 hours or 30 days.
  • Performance tab gives the Health Status and events for the past 24 hours or 30 days.
  • List view enables you to perform bulk admin configurations.

The Microsoft Azure monitor provides a brief detail of the Azure Virtual Network Gateway under the given subscription. Following are the list of metrics monitored in Azure Virtual Network Gateway Monitoring in their corresponding tabs:

Overview

ParameterDescription
INVENTORY
No of IP Configurations The number of IP Configurations in the Virtual Network.
No of VMs in VNet The maximum number of Virtual Machines in the Virtual Network, between the poll interval. This metric is applicable only in Express Route Gateway.
Metrics supported only for ExpressRoute Gateway
PEER ROUTING
Total Routes Advertised The maximum number of BGP routes advertised through the tunnel, between the poll interval.
Total Routes Learned The maximum number of BGP routes learned through the tunnel, between the poll interval.
CPU UTILIZATION
CPU Utilization The average amount of CPU utilized by the ExpressRoute Gateway, at the time of polling (in %).
DATA THROUGHPUT
Data Throughput The average Megabits received in ExpressRoute Gateway per second, between the poll interval (in Mb/s).
PACKETS THROUGHPUT
Packets Throughput The average number of packets received in ExpressRoute Gateway per second, between the poll interval (in packets/s).
FREQUENCY OF ROUTES CHANGE
Frequency of Routes Change The total frequency of route changes in ExpressRoute Gateway, between the poll interval.
EXPRESSROUTE FLOWS
Flows Rate (Max) The maximum number of flows created per second in ExpressRoute Gateway, between the poll interval (in flows/s).
Active Flows (Avg) The average number of Active flows in ExpressRoute Gateway, between the poll interval.
Metrics supported only for VPN Gateway
PEER ROUTING
Total Routes Advertised The total number of BGP routes advertised through the tunnel, between the poll interval.
Total Routes Learned The total number of BGP routes learned through the tunnel, between the poll interval.
GATEWAY S2S BANDWIDTH
Gateway S2S Bandwidth The average site-to-site bandwidth of the gateway per second, between the poll interval (in MB/s).
GATEWAY P2S BANDWIDTH
Gateway P2S Bandwidth The average point-to-site bandwidth of the gateway per second, between the poll interval (in MB/s).
P2S CONNECTIONS
Total P2S Connections The total number of point-to-site connections of the gateway between the poll interval.

Tunnel Performance

Note: Metrics shown in Tunnel Performance tab are supported only for VPN gateways in Azure Virtual Network Gateway monitor.

ParameterDescription
TOTAL TUNNEL FLOWS
Total Tunnel Flows The total number of flows on the tunnel, between the poll interval.
TUNNEL BANDWIDTH
Tunnel Bandwidth The average bandwidth of the tunnel per second, between the poll interval (in MB/s).
TUNNEL DATA THROUGHPUT
Tunnel Ingress Data Rate The total incoming data rate of the tunnel, per second between the poll interval (in MB/s).
Tunnel Egress Data Rate The total outgoing data rate of the tunnel, per second between the poll interval (in MB/s).
TUNNEL PACKETS THROUGHPUT
Tunnel Packets Rate (Max) The maximum number of tunnel peak packets per second, between the poll interval (in packets/s).
TUNNEL INGRESS PACKETS
Tunnel Ingress Packet Rate The total incoming packet rate of the tunnel per second, between the poll interval (in packets/s).
Tunnel Ingress Packet Drops The total number of incoming packets dropped by the tunnel, between the poll interval.
Tunnel Ingress Packet Drops (TS Mismatch) The total incoming packet drop count from the traffic selector mismatch of the tunnel, between the poll interval.
TUNNEL EGRESS PACKETS
Tunnel Egress Packets Rate The total outgoing packet rate of the tunnel per second, between the poll interval (in packets/s).
Tunnel Egress Packet Drops The total number of outgoing packets dropped by the tunnel, between the poll interval.
Tunnel Egress Packet Drops(TS Mismatch) The total outgoing packet drop count from the traffic selector mismatch of the tunnel, between the poll interval.
TUNNEL ALLOCATIONS (NAT)
Tunnel Allocations (NAT) The total number of allocations for a NAT rule on the tunnel, between the poll interval.
TUNNEL FLOWS (NAT)
Tunnel Flows (NAT) The total number of NAT flows on the tunnel by flow type and NAT rule, between the poll interval.
TUNNEL DATA BANDWIDTH (NAT)
Tunnel Data Bandwidth (NAT) The total data rate that was NATed on a tunnel per second by a NAT rule, between the poll interval (in MB/s).
Tunnel Data Bandwidth (Reverse NAT) The total data rate that was reverse NATed on a tunnel by a NAT rule, between the poll interval (in MB).
TUNNEL PACKETS RATE (NAT)
Tunnel Packets Rate (NAT) The total packet rate that was NATed on a tunnel per second by a NAT rule, between the poll interval (in packets/s).
Tunnel Packets Rate (Reverse NAT) The total packet rate that was reverse NATed on a tunnel by a NAT rule, between the poll interval.
Tunnel Packet Drops (NAT) The total number of NATed packets dropped by drop type and NAT rule, between the poll interval.

Configuration

ParameterDescription
CONFIGURATION
Resource Group Name The name of the resource group.
Location The location of the resource.
Provisioning State The current provisioning state of the virtual network gateway resource. Possible values:
  • Deleting
  • Failed
  • Succeeded
  • Updating
Gateway Type Type of the Virtual Network Gateway. Possible values:
  • ExpressRoute
  • LocalGateway
  • VPN
VPN Type Type of the VPN gateway. Possible values: Routebased/Policybased
SKU The SKU of the gateway. Please refer here for the possible values.
IP Sec Replay Protection Indicates whether the IPSecReplayProtection is enabled or not. Possible values: Enabled/Disabled
BGP Status Indicates whether BGP settings is enabled or not. Possible values: Enabled/Disabled
Active-Active Mode Indicates whether the Active-Active flag is enabled or not. Possible values: Enabled/Disabled
Private IP Address Status Indicates whether private IP enabled on this gateway for connections or not. Possible values: Enabled/Disabled
BGP Route Translation For Nat status Indicates whether BgpRouteTranslationForNat flag is enabled or not. Possible values: Enabled/Disabled