pfSense AWS VPN Dropout Every Month



  • Hi all,

    We're running a "ARM Cortex-A9 r4p1, 2.4.4-RELEASE-p2 (arm)" and everything is working nicely. However, we have established a VPN to AWS using the pfsense wizard. It works most of the time but sometimes it stops passing packets. The Internet connection remains functional and the status of the VPN connection to AWS remains green/established. However, no traffic flow.

    What can i do to troubleshoot this and what information can i provide to assist you in helping me?

    Some more information. The device has WAN and OPT1 ports. We run our main Internet connection out through WAN and a secondary backup connection out through OPT1. Each has of the two interfaces has an assigned VPN tunnel to AWS. Both are in the UP state during the issue. During the outage, we check and are still using the WAN (primary) Internet link.

    Ta,
    Andrew G


  • Netgate Administrator

    Do the tunnels show as established for both phase 1 and phase 2? Established Child SAs showing?

    Are they still the correct Child SAs?

    If you run a packet capture on the IPsec interface do you see traffic leaving or arrivinbg from the covered subnets?

    Steve



  • Excellent questions. I will check when it happens again. I appreciate you replying so quickly.

    -Andrew G


Log in to reply