Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Ipsec Mobile Status and logs

    Scheduled Pinned Locked Moved 2.0-RC Snapshot Feedback and Problems - RETIRED
    4 Posts 2 Posters 1.7k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • H
      hshardy3
      last edited by

      When mobile tunnel is established, Ipsec status overview tab still shows tunnel status with yellow x box. Also, the mobile tunnel descriptions are not reflected in logs. [Self] is used instead but the proper mobile description does show up in System log. Currently running arch i386, RC2-May 20th.

      1 Reply Last reply Reply Quote 0
      • jimpJ
        jimp Rebel Alliance Developer Netgate
        last edited by

        Mobile IPsec is a tricky thing to match up on the status. The widget tries more than the normal status screen, but if you have a lot of tunnels, the operations involved are quite lengthy and cpu-intensive. If you only have 1-2 tunnels it's not so bad.

        Remember: Upvote with the ๐Ÿ‘ button for any user/post you find to be helpful, informative, or deserving of recognition!

        Need help fast? Netgate Global Support!

        Do not Chat/PM for help!

        1 Reply Last reply Reply Quote 0
        • H
          hshardy3
          last edited by

          Only a mobile tunnel was configured.

          1 Reply Last reply Reply Quote 0
          • jimpJ
            jimp Rebel Alliance Developer Netgate
            last edited by

            Doesn't matter, the IPsec status screen still doesn't try to match it up.

            Matching the tunnel in the GUI is not the problem, it's showing the individual status for each and every connected mobile client that is the problem.

            You have to walk up and down the SAD/SPD which is quite a large operation when you get a significant amount of tunnels connected to a box. It doesn't scale well, so we haven't rewritten the IPsec status to properly handle mobile clients until a more efficient solution presents itself.

            Remember: Upvote with the ๐Ÿ‘ button for any user/post you find to be helpful, informative, or deserving of recognition!

            Need help fast? Netgate Global Support!

            Do not Chat/PM for help!

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.