<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[It used to work and it doesn&#x27;t anymore.]]></title><description><![CDATA[<p dir="auto">I had an IPsec connection between two pfsense, it had been working perfectly several months ago but recently it stopped working, it is not a blocking issue, and the IPsec logs are not telling,</p>
<p dir="auto">May 14 09:16:32	charon	38255	11[IKE] &lt;con2|1468&gt; IKE_SA con2[1468] state change: CONNECTING =&gt; DESTROYING<br />
May 14 09:16:32	charon	38255	11[IKE] &lt;con2|1468&gt; establishing IKE_SA failed, peer not responding<br />
May 14 09:16:32	charon	38255	11[IKE] &lt;con2|1468&gt; giving up after 5 retransmits<br />
May 14 09:16:17	charon	38255	11[CFG] ignoring acquire, connection attempt pending<br />
May 14 09:16:17	charon	38255	01[KNL] creating acquire job for policy 1.1.1.1/32|/0 === 2.2.2.2/32|/0 with reqid {1}<br />
May 14 09:15:17	charon	38255	01[NET] &lt;con2|1468&gt; sending packet: from 1.1.1.1[500] to 2.2.2.2[500] (336 bytes)<br />
May 14 09:15:17	charon	38255	01[IKE] &lt;con2|1468&gt; retransmit 5 of request with message ID 0<br />
May 14 09:15:02	charon	38255	01[CFG] ignoring acquire, connection attempt pending<br />
May 14 09:15:02	charon	38255	11[KNL] creating acquire job for policy 1.1.1.1/32|/0 === 2.2.2.2/32|/0 with reqid {1}<br />
May 14 09:14:35	charon	38255	11[NET] &lt;con2|1468&gt; sending packet: from 1.1.1.1[500] to 2.2.2.2[500] (336 bytes)<br />
May 14 09:14:35	charon	38255	11[IKE] &lt;con2|1468&gt; retransmit 4 of request with message ID 0<br />
May 14 09:14:11	charon	38255	11[NET] &lt;con2|1468&gt; sending packet: from 1.1.1.1[500] to 2.2.2.2[500] (336 bytes)<br />
May 14 09:14:11	charon	38255	11[IKE] &lt;con2|1468&gt; retransmit 3 of request with message ID 0<br />
May 14 09:13:58	charon	38255	11[NET] &lt;con2|1468&gt; sending packet: from 1.1.1.1[500] to 2.2.2.2[500] (336 bytes)<br />
May 14 09:13:58	charon	38255	11[IKE] &lt;con2|1468&gt; retransmit 2 of request with message ID 0<br />
May 14 09:13:51	charon	38255	11[NET] &lt;con2|1468&gt; sending packet: from 1.1.1.1[500] to 2.2.2.2[500] (336 bytes)<br />
May 14 09:13:51	charon	38255	11[IKE] &lt;con2|1468&gt; retransmit 1 of request with message ID 0<br />
May 14 09:13:49	charon	38255	07[CFG] vici client 267 disconnected<br />
May 14 09:13:49	charon	38255	05[CHD] CHILD_SA con2{5} state change: CREATED =&gt; ROUTED<br />
May 14 09:13:49	charon	38255	05[CFG] configured proposals: ESP:AES_GCM_16_128/NO_EXT_SEQ, ESP:AES_CBC_128/HMAC_SHA2_256_128/NO_EXT_SEQ<br />
May 14 09:13:49	charon	38255	05[CFG] installing 'con2'<br />
May 14 09:13:49	charon	38255	05[CHD] CHILD_SA con2{4} state change: ROUTED =&gt; DESTROYING<br />
May 14 09:13:49	charon	38255	05[CFG] uninstalling 'con2'<br />
May 14 09:13:49	charon	38255	05[CFG] replaced vici connection: con2<br />
May 14 09:13:49	charon	38255	05[CFG] id = 2.2.2.2<br />
May 14 09:13:49	charon	38255	05[CFG] class = pre-shared key<br />
May 14 09:13:49	charon	38255	05[CFG] remote:<br />
May 14 09:13:49	charon	38255	05[CFG] id = 1.1.1.1<br />
May 14 09:13:49	charon	38255	05[CFG] class = pre-shared key<br />
May 14 09:13:49	charon	38255	05[CFG] local:<br />
May 14 09:13:49	charon	38255	05[CFG] if_id_out = 0<br />
May 14 09:13:49	charon	38255	05[CFG] if_id_in = 0<br />
May 14 09:13:49	charon	38255	05[CFG] proposals = IKE:AES_CBC_256/HMAC_SHA2_256_128/PRF_HMAC_SHA2_256/MODP_2048</p>
]]></description><link>https://forum.netgate.com/topic/188184/it-used-to-work-and-it-doesn-t-anymore</link><generator>RSS for Node</generator><lastBuildDate>Fri, 13 Mar 2026 14:54:15 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/188184.rss" rel="self" type="application/rss+xml"/><pubDate>Tue, 14 May 2024 14:19:26 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to It used to work and it doesn&#x27;t anymore. on Tue, 14 May 2024 15:35:28 GMT]]></title><description><![CDATA[<p dir="auto">@oscar-pulgarin<br />
The question is, what the remote site logs regarding this connection, however.</p>
]]></description><link>https://forum.netgate.com/post/1169262</link><guid isPermaLink="true">https://forum.netgate.com/post/1169262</guid><dc:creator><![CDATA[viragomann]]></dc:creator><pubDate>Tue, 14 May 2024 15:35:28 GMT</pubDate></item><item><title><![CDATA[Reply to It used to work and it doesn&#x27;t anymore. on Tue, 14 May 2024 15:17:52 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/viragomann">@<bdi>viragomann</bdi></a> I have access to both Pfsense, both have other IPsec tunnels established and they still do not respond</p>
]]></description><link>https://forum.netgate.com/post/1169252</link><guid isPermaLink="true">https://forum.netgate.com/post/1169252</guid><dc:creator><![CDATA[oscar.pulgarin]]></dc:creator><pubDate>Tue, 14 May 2024 15:17:52 GMT</pubDate></item><item><title><![CDATA[Reply to It used to work and it doesn&#x27;t anymore. on Tue, 14 May 2024 15:11:34 GMT]]></title><description><![CDATA[<p dir="auto">@oscar-pulgarin<br />
What's about the other site?<br />
Seems it doesn't respond.</p>
]]></description><link>https://forum.netgate.com/post/1169247</link><guid isPermaLink="true">https://forum.netgate.com/post/1169247</guid><dc:creator><![CDATA[viragomann]]></dc:creator><pubDate>Tue, 14 May 2024 15:11:34 GMT</pubDate></item></channel></rss>