Frequent crashed ? Ip sec might be the cause.
-
Hi,
On one of my boxes (soekris 5501) I'm experiencing frequent crashes since about 2 weeks.
By crash I mean that the box suddenly stops, can't ping any more, console isn't responsive anymore whatsoever.
There's not even a message saying anything goes wrong, it suddenly stops working.After startup there are no crash dumps available either.
The only considerable change I've made in configuration is to add a new ipsec connection. The ip sec connection it self for as as the box isn't crashing is working fine, i'm routing 2 subnets through it and both side can reach each other perfectly.
The network setup is as follows
Local network <-> crashed box (pfsense 2.0) <–> ip sec connection <--> pfsense 2.0 <--> remote network
Both pfsense boxes have default routes to there respective internet connections, and that is working fine as well.
computers on the local network access mail / proxy server on the remote network.
I have a small guess that the crash occurs when a browser access on one side proxy through the remote and network for normal http traffic and than for more specific protocols like you tube / flash which goes through the local gateway, but it's hard to find the exact cause...
Anybody having similar issues with ip sec ?
I've already tried reinstalling the crashed box from scratch but keep having the same issues...
Any help would be appreciated.
Stef
-
I didn't see any responses so I thought I'd throw in a couple of comments.
I've got a firewall at a datacenter that's running fairly current RC firmware. It's been locking up the same way yours has about every 24 hours (always in the morning, but that might not mean much). The only packages installed are Snort and rate, though I have an IPSec tunnel to the pfSense firewall at my home office.
The home office firewall has been more reliable, but it locked up hard requiring a power cycle this morning, and this was while the IPSec tunnel was down (the datacenter firewall has been down for about 48 hours).
I'll see if deleting the IPSec VPN definitions helps things.
-
Are you still having issues with your boxes?
I have 4 boxes. Two of them crashes. They are the same hardware and there should be a fix to them to get them going.
See thread: http://forum.pfsense.org/index.php/topic,38660.0.html
Maybe try to contact Soekris about hardware support for 2.0. It may be a minor fix to get your boxes running again. As what I have read in the forum crashes are most likely to be related to hardware at this stage of the development of 2.0
BR. Anders