Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Ipsec (PSK and log) headache

    Scheduled Pinned Locked Moved 2.0-RC Snapshot Feedback and Problems - RETIRED
    2 Posts 1 Posters 1.1k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • _ Offline
      _igor_
      last edited by

      I'm having some headache because of PSK in IPSEC:

      I added a mobile client with PSK/XAUTH and gave it a PSK say "aaaBBB".
      Added a user with usermanager.
      Reviewed the settings and PSK at the user-manager is "aaaBBB".

      Then changed the PSK in IPSEC-settings and reviewed the PSK:

      Phase 1 setting shows the new PSK: "AAAbbb"
      IPSEC PSK shows same as in usermanager: "aaaBBB". Thats the old PSK, not the new one.
      I can connect with the new PSK right, so seems to be that the PSK is changed but not shown right!

      When i change now in usermanager the PSK, its shown right everywhere. I can still connect via IPSEC with the new PSK.

      1 Reply Last reply Reply Quote 0
      • _ Offline
        _igor_
        last edited by

        Addition: I have 2 tunnels, tunnel A and tunnel B.

        Tunnel A is a mobile tunnel, tunnel B is a static tunnel.

        In the IPSEC-log the description is always wrong! All entries refer as "tunnel A", even if that tunnel is a mobile tunnel and not connected or connecting! Every entry is from tunnel B, which is the static tunnel!
        If then tunnel A rises, same entries, this time right: tunnel A. But never appears any tunnel B entry in the logs.
        I then changed the tunnels in the config and now tunnel A is the static tunnel, entries appear as tunnel A.
        When tunnel B rises, entries in the log show tunnel B, which is right now.

        Is the way how the log-entries are generated different when a tunnel is mobile or static?

        1 Reply Last reply Reply Quote 0
        • First post
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.