Re: [pfSense Support] IPSec on 1.2-embedded

2010-02-10 Thread Vick Khera
On Tue, Feb 9, 2010 at 11:19 AM, Gary Buckmaster g...@s4f.com wrote:
  Using 1.2.3 and setting a low DPD value should help this issue, but keep in
 mind that it will still be dead until the DPD value has been reached.

What is this called on the GUI? I don't see anything obvious in the
tunnel configuration page.

-
To unsubscribe, e-mail: support-unsubscr...@pfsense.com
For additional commands, e-mail: support-h...@pfsense.com

Commercial support available - https://portal.pfsense.org



Re: [pfSense Support] IPSec on 1.2-embedded

2010-02-10 Thread Gary Buckmaster

Vick Khera wrote:

On Tue, Feb 9, 2010 at 11:19 AM, Gary Buckmaster g...@s4f.com wrote:
  

 Using 1.2.3 and setting a low DPD value should help this issue, but keep in
mind that it will still be dead until the DPD value has been reached.



What is this called on the GUI? I don't see anything obvious in the
tunnel configuration page.

-
To unsubscribe, e-mail: support-unsubscr...@pfsense.com
For additional commands, e-mail: support-h...@pfsense.com

Commercial support available - https://portal.pfsense.org

  
The field you're looking for is DPD Interval. 


-
To unsubscribe, e-mail: support-unsubscr...@pfsense.com
For additional commands, e-mail: support-h...@pfsense.com

Commercial support available - https://portal.pfsense.org



Re: [pfSense Support] IPSec on 1.2-embedded

2010-02-10 Thread Vick Khera
On Wed, Feb 10, 2010 at 11:26 AM, Gary Buckmaster g...@s4f.com wrote:
 The field you're looking for is DPD Interval.


Thanks!

-
To unsubscribe, e-mail: support-unsubscr...@pfsense.com
For additional commands, e-mail: support-h...@pfsense.com

Commercial support available - https://portal.pfsense.org



[pfSense Support] IPSec on 1.2-embedded

2010-02-09 Thread Evgeny Yurchenko

Hello.
There is Soekris with 1.2-RELEASE-embedded on CF. It has an IPSec tunnel 
to 1.2.3 carp-cluster. When carp-switchover occurs on the cluster the 
tunnel remains active but dead (active to former active node).

1. Will upgrade to pfSense-nano solve this problem?
2. Is it possible to do this upgrade remotely?
Thanks.

Evgeny.

-
To unsubscribe, e-mail: support-unsubscr...@pfsense.com
For additional commands, e-mail: support-h...@pfsense.com

Commercial support available - https://portal.pfsense.org



Re: [pfSense Support] IPSec on 1.2-embedded

2010-02-09 Thread Gary Buckmaster

Evgeny Yurchenko wrote:

Hello.
There is Soekris with 1.2-RELEASE-embedded on CF. It has an IPSec 
tunnel to 1.2.3 carp-cluster. When carp-switchover occurs on the 
cluster the tunnel remains active but dead (active to former active 
node).

1. Will upgrade to pfSense-nano solve this problem?
2. Is it possible to do this upgrade remotely?
Thanks.

Evgeny.

-
To unsubscribe, e-mail: support-unsubscr...@pfsense.com
For additional commands, e-mail: support-h...@pfsense.com

Commercial support available - https://portal.pfsense.org

Its not possible to upgrade remotely.  You will need to reflash the CF 
card.  Using 1.2.3 and setting a low DPD value should help this issue, 
but keep in mind that it will still be dead until the DPD value has been 
reached. 


-
To unsubscribe, e-mail: support-unsubscr...@pfsense.com
For additional commands, e-mail: support-h...@pfsense.com

Commercial support available - https://portal.pfsense.org