> Source: [sk170614](https://support.checkpoint.com/results/sk/sk170614)

# sk170614 - Tunnel is shown as down on SmartView Monitor when using IKEv1 and Tunnel Test with AWS 

| Property | Value |
|----------|-------|
| Solution ID | sk170614 |
| Date Created | 2020-11-23 |
| Last Modified | 2020-12-02 |
| Technical Level | Advanced |
| Products | Security Gateway |
| Versions | R81 (EOS) |

## Symptoms

- Tunnel is shown as down on SmartView Monitor when using IKEv1 and Tunnel Test with AWS.

## Cause

AWS is unable to initiate a negotiation, when the traffic is generated only from the peer side. The tunnel is shown as "down". In order to overcome this AWS limitation, you need to configure "tunnel test" as the "keep alive" method.  

After the above is configured, you will **not** be able to monitor the tunnel status in SmartView Monitor. Tunnel test is a Check Point protocol and AWS will not answer.  

Tunnel test is being sent with IPsec keys which keep Phase 2 "up", while DPD is being sent with IKE keys which keeps only Phase 1 "up".

<br />

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
