Ipsec dynamic ip automatically



  • I have enclosed tunnel and running perfect ipsec in two pfSense 2.2.2, however the website link B is dynamic .. did some testing .. if he falls .. the vpn not back, I have to go in and take a ipsec reload ..

    There is like leaving it automatically?



  • @thiagomespb:

    I have enclosed tunnel and running perfect ipsec in two pfSense 2.2.2, however the website link B is dynamic .. did some testing .. if he falls .. the vpn not back, I have to go in and take a ipsec reload ..

    There is like leaving it automatically?

    Maybe you can try IKEv2 ?

    IKEv2 has been improved so that it is able to detect whether the tunnel is still alive or not. This is commonly referred to as a “liveness” check. If the liveness check fails, caused by the tunnel breaking down, IKEv2 is then able to re-establish the connection automatically. IKEv1 does not have this ability and would just assume that the connection is always up thus having quite an impact on reliability. There are several workarounds for IKEv1, but these are not standardized.

    http://www.differencebetween.net/technology/protocols-formats/difference-between-ikev1-and-ikev2/


Log in to reply