Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Not initiating Site-to-Site VPN IPSec connection

    Scheduled Pinned Locked Moved IPsec
    7 Posts 3 Posters 1.2k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • G
      gesture1968
      last edited by

      Hi,

      I have a dozen IPSec s-2-s VPN tunnels setup with the Phase1 'Responder Only' checkbox unchecked, but after a reboot none of these tunnels initiate the connection. I have to manually click on the 'Connect' button to get them started,,, Isn't the checkbox suppose to start initiating the connection automatically?

      Greetings
      Gesture.

      1 Reply Last reply Reply Quote 0
      • W
        westm003
        last edited by

        i have the same…

        1 Reply Last reply Reply Quote 0
        • G
          gesture1968
          last edited by

          Any updates on this? I still have connections that are set as follows, but still do not automatically connect:

          <dropbox image="" not="" showing ="" :(="">

          IPSec_ConnectionSetting.png
          IPSec_ConnectionSetting.png_thumb</dropbox>

          1 Reply Last reply Reply Quote 0
          • DerelictD
            Derelict LAYER 8 Netgate
            last edited by

            IPsec initiates when there is traffic matching a traffic selector.

            Uncheck responder only in the phase 1 and set the phase 2 to automatically ping something on the other side.

            Chattanooga, Tennessee, USA
            A comprehensive network diagram is worth 10,000 words and 15 conference calls.
            DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
            Do Not Chat For Help! NO_WAN_EGRESS(TM)

            1 Reply Last reply Reply Quote 0
            • G
              gesture1968
              last edited by

              Of topic to moderator: How do I insert a dropbox picture?

              1 Reply Last reply Reply Quote 0
              • G
                gesture1968
                last edited by

                @Derelict:

                IPsec initiates when there is traffic matching a traffic selector.

                Uncheck responder only in the phase 1 and set the phase 2 to automatically ping something on the other side.

                Thanks, I've filled in an IP address and it immediately initiated a connection!

                1 Reply Last reply Reply Quote 0
                • DerelictD
                  Derelict LAYER 8 Netgate
                  last edited by

                  It is generally better to just attach the image when posting using the attachment function there.

                  Otherwise use the insert image button in the editor toolbar.

                  Chattanooga, Tennessee, USA
                  A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                  DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                  Do Not Chat For Help! NO_WAN_EGRESS(TM)

                  1 Reply Last reply Reply Quote 0
                  • First post
                    Last post
                  Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.