Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    VTI interface down because interface number created is greater than ipsec32768

    Scheduled Pinned Locked Moved FRR
    5 Posts 2 Posters 523 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • nzkiwi68N
      nzkiwi68
      last edited by

      Can we please get this issue fixed in 2.4.5?
      https://redmine.pfsense.org/issues/9592

      I now have multiple customers with more than 50 IPSEC P1 tunnels and that means I cannot create any new VTI interfaces. If I need to for any reason delete the VTI tunnels that are working, when created again they will most certainly be broken.

      I don't like exporting the config, mucking around with notepad++, etc to try and get VTI interfaces working.

      Thanks.

      1 Reply Last reply Reply Quote 0
      • jimpJ
        jimp Rebel Alliance Developer Netgate
        last edited by

        The patch in that PR is too high impact to bring in to a release this late in the cycle. Also the person who submitted the PR needs to update it to account for recent changes in the code base.

        Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

        Need help fast? Netgate Global Support!

        Do not Chat/PM for help!

        1 Reply Last reply Reply Quote 0
        • nzkiwi68N
          nzkiwi68
          last edited by

          I'm hanging out for 2.4.5-p1 and I see the issues have increased to 65 issues as at writing this... and here I am asking if something else can be added to 2.4.5-p1.

          Bug 9592 - VTI interface down because interface number created is greater than ipsec32768
          https://redmine.pfsense.org/issues/9592

          What are the chances of getting 9592 fixed with 2.4.5-p1?

          1 Reply Last reply Reply Quote 0
          • jimpJ
            jimp Rebel Alliance Developer Netgate
            last edited by

            No. It's too large a change on its own and the changes are too intertwined with other major changes made to IPsec in 2.5.0.

            Remember: Upvote with the 👍 button for any user/post you find to be helpful, informative, or deserving of recognition!

            Need help fast? Netgate Global Support!

            Do not Chat/PM for help!

            nzkiwi68N 1 Reply Last reply Reply Quote 0
            • nzkiwi68N
              nzkiwi68 @jimp
              last edited by

              @jimp ok, thanks for the reply.

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.