Not able to set up a second IPSec VTI tunnel... makes the first tunnel fail..
-
I have a site with a sophos xg firewall (site A) connecting via IPSec VTI to pfsense, and it's been working fine for some time now.
But now I'm trying to set up a connection towards a second sophos xg (site B).I created a second tunnel for this purpose, and I can get that site operational as well... But immediately after it goes on line, the site A tunnel drops I can not get it back up again. I have to completely disable the second tunnel in order reestablish the connection with site A...
Should it not be possible to use two VTI tunnels towards different sites?? How do I go about having both sites connecting?
-
@Gblenn did you ever find a solution for this? I have a similar problem, with a few existing tunnels, but when I add another, one of the previous ones fails to reconnect.
-
@lifeboy Unfortunately not!
I did make some further testing with different tunnel settings but never got it to work. I don't know why this should be so difficult...
I have started to prepare a test environment that I intend to use to do more testing and hopefully get it to work... But I have some other things I need to get going that have higher priority...
-
@Gblenn This is strange. I previously simply added a new tunnel and it works. It's been a while since I last did this, maybe about 6 months, and now suddenly this strange behaviour happens.