Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    IPSec tunnels failing

    Scheduled Pinned Locked Moved IPsec
    5 Posts 3 Posters 1.0k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • M
      MilesDeep
      last edited by

      We've had an issue that began yesterday with the Squid proxy.  After reinstalling pfSense and restoring a backup config, we still are fighting intermittent remote VPN failures.  In Status: IPsec window, on the VPNs that are down, we find the Algo column blank, and the Remote ID=Any Identifier.  These items are correctly defined in the Phase 1 and Phase 2.

      1 Reply Last reply Reply Quote 0
      • D
        doktornotor Banned
        last edited by

        So you installed Squid and it broke? Would sound like removing Squid is the way to go, if that's the case.

        1 Reply Last reply Reply Quote 0
        • M
          MilesDeep
          last edited by

          Squid had been on the box from the start.  It's just that the Squid service would keep shutting down.  It was just the beginning of the issues.

          1 Reply Last reply Reply Quote 0
          • D
            doktornotor Banned
            last edited by

            Afraid you need to improve your description of the issue. Logs would be a good start.

            1 Reply Last reply Reply Quote 0
            • C
              cmb
              last edited by

              Squid almost certainly wouldn't be related. Unless maybe it's shutting down because of a hardware problem that's also affecting strongswan but I would guess that's not very likely as it'd probably crash and reboot the system.

              The status described is just how things would look when it's trying to connect and isn't yet connected, it's not that your P1/P2 config isn't there, it's just not existent in status at that point.

              No telling what might be happening. IPsec logs would be useful.

              1 Reply Last reply Reply Quote 0
              • First post
                Last post
              Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.