Ipsec Mobile Status and logs
-
When mobile tunnel is established, Ipsec status overview tab still shows tunnel status with yellow x box. Also, the mobile tunnel descriptions are not reflected in logs. [Self] is used instead but the proper mobile description does show up in System log. Currently running arch i386, RC2-May 20th.
-
Mobile IPsec is a tricky thing to match up on the status. The widget tries more than the normal status screen, but if you have a lot of tunnels, the operations involved are quite lengthy and cpu-intensive. If you only have 1-2 tunnels it's not so bad.
-
Only a mobile tunnel was configured.
-
Doesn't matter, the IPsec status screen still doesn't try to match it up.
Matching the tunnel in the GUI is not the problem, it's showing the individual status for each and every connected mobile client that is the problem.
You have to walk up and down the SAD/SPD which is quite a large operation when you get a significant amount of tunnels connected to a box. It doesn't scale well, so we haven't rewritten the IPsec status to properly handle mobile clients until a more efficient solution presents itself.