OpenVPN config stops working after restore config on new box



  • I have a site to site vpn with 2 pfsense 1.2.3 rc1 instances.

    At site1, the fan on the firewall's cpu started seizing up, so I grabbed another pc from the spares and put the current pfsense on it, 1.2.3.  I restored the config onto the new box, and everything came back up as it should, but the two sites aren't reestablishing their vpn link.

    I've since gone back to the previous fw box after jury-rigging a replacement cpu fan, and the site-to-site link is going good now.

    I was wondering if the config backup/restore misses something that openvpn needs, or barring that, is there a way to increase the logging details of the vpn system as I wasn't getting much.


  • Rebel Alliance Developer Netgate

    Everything you need should be in the config.xml that you restore to the other system. Was the WAN IP address the same on the old and new unit? If it gets an IP by DHCP from upstream somewhere, it may have given a different system a different IP address.

    If you need more detail in the OpenVPN log, just add "verb x;" in the custom options box, where x is a number. I think the default is either 2 or 3, you can go all the way up to 9, but you don't really want that much in most cases.



  • @jimp:

    Everything you need should be in the config.xml that you restore to the other system. Was the WAN IP address the same on the old and new unit? If it gets an IP by DHCP from upstream somewhere, it may have given a different system a different IP address.

    If you need more detail in the OpenVPN log, just add "verb x;" in the custom options box, where x is a number. I think the default is either 2 or 3, you can go all the way up to 9, but you don't really want that much in most cases.

    Yeah, same IP address (static from our ISP).  I will try the verb option.  Thanks.


Log in to reply