M. N. a écrit : > Hi, > Is anyone else having problems with site-to-site VPNs with sites located > inside China? > > > > We have multiple different customers with sites in China who's IPSEC tunnel > came down at exactly the same time on Sunday Morning (~12AM EST) and have > been unable to bring them back up since. This ranges from Edge devices to > appliances to software on open platforms. Phase 1 can't initiate at all and > no changes were done in any environment over the weekend. > do you still have access to the devices in China ?
Did you check if the udp port 500 packets were sent/received correctly ? You can generate udp port 500 packets with tools like hping. Please try to send some from the non chinese devices, and see if they arrive correctly on the other device with a network monitor. If the packets are blocked, then hping --traceroute can help. > I'm wondering if this is just a big coincidence or something else. > > > > Thanks > Scanned by Check Point Total Security Gateway. ================================================= To set vacation, Out-Of-Office, or away messages, send an email to [email protected] in the BODY of the email add: set fw-1-mailinglist nomail ================================================= To unsubscribe from this mailing list, please see the instructions at http://www.checkpoint.com/services/mailing.html ================================================= If you have any questions on how to change your subscription options, email [email protected] =================================================
