We don't alert to our incident management tool on ASA site ot site VPNs goind down but the default "ASA Site-to-Site" alert is enabled and reports some of the ASAs with VPNs as down / up, but not all of them.
One specific one I can see if I go to the node, and select the site to site tab shows as up / down accordingly. At the moment this particular one is being troublesome for us and whilst we troubleshoot it we'd like to be alerted, at the very least in the alerts of events panels.
But for whatever reason, this one node, which has 7 active VPNs (6 when the problematic one is down) does not send a trigger (if that's the right word) to the alerts / events console. The alert itself is the original default, as mentioned above, with the trigger condition being:

The nodes that do trigger event/alert entries use the same TACACS account to access / interrogate them.
Perhaps the only significant difference is that this firewall is monitored via an APE for a specific [clashing] IP range.
Any thoughts please?