<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[SG-5100 21.02 IPsec tunnels duplicate&#x2F;incorrect status]]></title><description><![CDATA[<p dir="auto">SG-5100 upgrade to 21.02. I have about 25 IPsec tunnels. I only have maybe 5-10 up at anytime as I use these to connect/support remote networks and do not normally keep all up.<br />
After upgrade I notice IPsec status is slow to refresh so I start disabling tunnels until it is fast again. I notice that after enabling one by one that some tunnels in Status, IPsec show green disconnected button at bottom but are actually connected and have another IPsec ID. These tunnels seem to cause the slowness of the UI status. If I disconnect one of those IDs and then reconnect at bottom it connects again but still shows this other ID instead. Some tunnels are OK and do not exhibit this behaviour. I have tried deleting these problem tunnels and recreating the IPsec on each end and still same issue. Any ideas why? I am thinking maybe something got corrupt and a backup/restore may work but I have to wait until weekend to do.</p>
]]></description><link>https://forum.netgate.com/topic/161291/sg-5100-21-02-ipsec-tunnels-duplicate-incorrect-status</link><generator>RSS for Node</generator><lastBuildDate>Sat, 16 May 2026 22:55:36 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/161291.rss" rel="self" type="application/rss+xml"/><pubDate>Tue, 23 Feb 2021 04:40:27 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to SG-5100 21.02 IPsec tunnels duplicate&#x2F;incorrect status on Sun, 07 Mar 2021 23:14:18 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/jimp">@<bdi>jimp</bdi></a> Hi there, I updated to 2.5 and found that my site-to-site IPSEC VPN connections were broken. I found this thread and installed the aforementioned patches which fixed the VPN (including the Status-&gt;ipsec page) but the ipsec status widget still seems to be broken, i.e., they show connected on the Status-&gt;ipsec page but show as down on the Widget-&gt;Tunnels tab.</p>
<p dir="auto">Thanks</p>
]]></description><link>https://forum.netgate.com/post/970988</link><guid isPermaLink="true">https://forum.netgate.com/post/970988</guid><dc:creator><![CDATA[marshmallow]]></dc:creator><pubDate>Sun, 07 Mar 2021 23:14:18 GMT</pubDate></item><item><title><![CDATA[Reply to SG-5100 21.02 IPsec tunnels duplicate&#x2F;incorrect status on Tue, 23 Feb 2021 23:23:50 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/jimp">@<bdi>jimp</bdi></a> Thanks I applied all six patches and didn't even have to reboot - issue resolved instantly.</p>
]]></description><link>https://forum.netgate.com/post/967370</link><guid isPermaLink="true">https://forum.netgate.com/post/967370</guid><dc:creator><![CDATA[brians]]></dc:creator><pubDate>Tue, 23 Feb 2021 23:23:50 GMT</pubDate></item><item><title><![CDATA[Reply to SG-5100 21.02 IPsec tunnels duplicate&#x2F;incorrect status on Tue, 23 Feb 2021 22:45:40 GMT]]></title><description><![CDATA[<p dir="auto">That code should be the same for both</p>
]]></description><link>https://forum.netgate.com/post/967355</link><guid isPermaLink="true">https://forum.netgate.com/post/967355</guid><dc:creator><![CDATA[jimp]]></dc:creator><pubDate>Tue, 23 Feb 2021 22:45:40 GMT</pubDate></item><item><title><![CDATA[Reply to SG-5100 21.02 IPsec tunnels duplicate&#x2F;incorrect status on Tue, 23 Feb 2021 20:18:54 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/jimp">@<bdi>jimp</bdi></a> Thanks, the target version is 2.5 can I use these for 21.02 or are there ones specific to the pfsense+ ?</p>
]]></description><link>https://forum.netgate.com/post/967312</link><guid isPermaLink="true">https://forum.netgate.com/post/967312</guid><dc:creator><![CDATA[brians]]></dc:creator><pubDate>Tue, 23 Feb 2021 20:18:54 GMT</pubDate></item><item><title><![CDATA[Reply to SG-5100 21.02 IPsec tunnels duplicate&#x2F;incorrect status on Tue, 23 Feb 2021 16:48:51 GMT]]></title><description><![CDATA[<p dir="auto">To ensure you have all of the current known and fixed IPsec issues corrected, You can install the <a href="https://docs.netgate.com/pfsense/en/latest/development/system-patches.html" target="_blank" rel="noopener noreferrer nofollow ugc">System Patches package</a> and then create entries for the following commit IDs to apply the fixes:</p>
<ul>
<li><code>ead6515637a34ce6e170e2d2b0802e4fa1e63a00</code> <a href="https://redmine.pfsense.org/issues/11435" target="_blank" rel="noopener noreferrer nofollow ugc">#11435</a></li>
<li><code>57beb9ad8ca11703778fc483c7cba0f6770657ac</code> <a href="https://redmine.pfsense.org/issues/11435" target="_blank" rel="noopener noreferrer nofollow ugc">#11435</a></li>
<li><code>10eb04259fd139c62e08df8de877b71fdd0eedc8</code> <a href="https://redmine.pfsense.org/issues/11442" target="_blank" rel="noopener noreferrer nofollow ugc">#11442</a></li>
<li><code>ded7970ba57a99767e08243103e55d8a58edfc35</code> <a href="https://redmine.pfsense.org/issues/11486" target="_blank" rel="noopener noreferrer nofollow ugc">#11486</a></li>
<li><code>afffe759c4fd19fe6b8311196f4b6d5e288ea4fb</code> <a href="https://redmine.pfsense.org/issues/11487" target="_blank" rel="noopener noreferrer nofollow ugc">#11487</a></li>
<li><code>2fe5cc52bd881ed26723a81e0eed848fd505fba6</code> <a href="https://redmine.pfsense.org/issues/11488" target="_blank" rel="noopener noreferrer nofollow ugc">#11488</a></li>
</ul>
]]></description><link>https://forum.netgate.com/post/967194</link><guid isPermaLink="true">https://forum.netgate.com/post/967194</guid><dc:creator><![CDATA[jimp]]></dc:creator><pubDate>Tue, 23 Feb 2021 16:48:51 GMT</pubDate></item></channel></rss>