IPSec stops for all tunnels, racoon has to be restarted.



  • I have a strange issue, that seems to only be happening on one system.  Here's what I have.

    HP DL140 with dual 3.06ghz Xeon processors and 4 gigs RAM.  
    pfSense is loaded with mullti processor configuration.
    Currently running,
    2.0-RC3  (i386)
    built on Wed Jun 29 13:40:13 EDT 2011

    I have 3 ipsec tunnels setup, 2 connecting to pfSense 1.2.3 and one to another pfSense 2.0 RC3.  All setup with a 10 second DPD and 200 retries.  At different times, all tunnels show connected at both ends but no traffic will pass.  It seems the quickest fix is to restart racoon.  We have checked the cable modem and I'm able to manage it just fine in a during the failed state.

    Any recommendations?



  • Do you use the PPTP server, too?  If so, this may apply: http://redmine.pfsense.org/issues/1421



  • @drees:

    Do you use the PPTP server, too?  If so, this may apply: http://redmine.pfsense.org/issues/1421

    Yes, there are several PPTP tunnels running at the same time, this could be my issue.  I don't see that this is resolved, do you know if there is more on it?



  • Not resolved.  Still affects a lot of people.  Add yourself to the ticket to let the devs know it affects another person.



  • @drees:

    Not resolved.  Still affects a lot of people.  Add yourself to the ticket to let the devs know it affects another person.

    Thanks, I did.  I have other pfsense 2.0 RC3 deployments and all this makes sense,  none of the ones that work use PPTP tunnels, only site to site, so this information will save the hair I have left.  :P


Locked