Navigation

    Netgate Discussion Forum
    • Register
    • Login
    • Search
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search

    Route reset after restarting ipsec

    IPsec
    1
    2
    2446
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • C
      capitangiaco last edited by

      Hi all

      I have 4 wan interfaces and ten ipsec tunnel distribuited over the wans.
      I have a problem with the last added tunnel:

      in the normale state this is the routing table:
      192.168.250.0/24  link#13            UC          0        0  vlan3
      192.168.250.1      00:0d:b9:06:b6:5a  UHLW        1  3495609  vlan3    295
      192.168.250.254    192.168.250.254    UH          0        0 carp14

      if I press the save button in vpn / ipsec or I restart the firewall I find this routing table:

      192.168.250.0/24  link#13            UC          0        0  vlan3
      192.168.250.1      159...161    UGHS        0      58  vlan0
      192.168.250.254    192.168.250.254    UH          0        0 carp14

      that gw is the gw for the main wan:
      Destination        Gateway            Flags    Refs      Use  Netif Expire
      default            159...161    UGS        0 147006558  vlan0

      And obviously the ipsec tunnel goes down until I do a:
      route delete 192.168.250.1
      that take to all to the normality

      how can I debug this situation ?

      thanks

      Giacomo

      1 Reply Last reply Reply Quote 0
      • C
        capitangiaco last edited by

        the only trick seems to be:
        route delete 192.168.250.1 every 5 min by the cron.

        Giacomo

        1 Reply Last reply Reply Quote 0
        • First post
          Last post

        Products

        • Platform Overview
        • TNSR
        • pfSense Plus
        • Appliances

        Services

        • Training
        • Professional Services

        Support

        • Subscription Plans
        • Contact Support
        • Product Lifecycle
        • Documentation

        News

        • Media Coverage
        • Press
        • Events

        Resources

        • Blog
        • FAQ
        • Find a Partner
        • Resource Library
        • Security Information

        Company

        • About Us
        • Careers
        • Partners
        • Contact Us
        • Legal
        Our Mission

        We provide leading-edge network security at a fair price - regardless of organizational size or network sophistication. We believe that an open-source security model offers disruptive pricing along with the agility required to quickly address emerging threats.

        Subscribe to our Newsletter

        Product information, software announcements, and special offers. See our newsletter archive to sign up for future newsletters and to read past announcements.

        © 2021 Rubicon Communications, LLC | Privacy Policy