Hi @Aaida ,
Excellent. Yes, you can set the Tunneling Monitoring Profile to Fail Over, and when the IP is unreachable, it will shut down the tunnel interface and remove the routes to the tunnel. You will need to have an alternative path, another VPN tunnel or something.
Please stop saying "monitor peer IP." It sounds like you are talking about the public VPN peer IP address. That is not how it works. You need to monitor an IP address reachable via the VPN tunnel.