EFW Support

Support => VPN Support => Topic started by: mvrk on Saturday 07 November 2009, 02:17:50 am



Title: ipsec blocked after tunnel restart
Post by: mvrk on Saturday 07 November 2009, 02:17:50 am
Hi, i've configured a few net-to-net ipsec tunnels, and i'm experiencing a problem when connection is lost to the ipsec gateway  and the service restarts the tunnels.

When connection is lost or i modify a tunnel or i click the restart button of the tunnel, the firewall starts to block traffic, the only thing that reaches my network are pings.

The only way i can fix is to reboot.

This is the log of the firewall :

Nov  6 15:11:47 router ulogd[1455]: ZONEFW:DROP IN= OUT=br0 MAC= SRC=10.112.28.206 DST=192.168.2.253 LEN=739 TOS=00 PREC=0x00 TTL=126 ID=26987 DF PROTO=KEY_TCP SPT=1447 DPT=3000 SEQ=2947868798 ACK=2429749947 WINDOW=64240 ACK PSH FIN URGP=0


Anyone had this problem before?


Title: Re: ipsec blocked after tunnel restart
Post by: ad.aimm on Saturday 07 November 2009, 03:07:14 am
hi

is it an ipsec tunnel between endian box ?

regards,

ad


Title: Re: ipsec blocked after tunnel restart
Post by: mvrk on Saturday 07 November 2009, 03:59:02 am
Nope, the other side is a Cisco ASA