I'm still running 80.2 and thought I would mention my issue - in the
unlikely event that the VPN code has not been updated since that
release.  So, If this hasn't already been spotted and resolved, keep
this in mind when you are working on VPN components.
 
I have 2 IPSEC VPN tunnels which run continuously and several others
purely on demand. I had no problems at all until about the 24 day uptime
mark, when I noticed all the tunnels had dropped for no apparent reason.
Basically, the SA lifetime would expire and there would be no attempt to
reconnect.

I could bring them back up by simply reconfiguring them (which I'm
guessing forces a restart of the IPsec daemon), but would only stay up
for one "lifetime" and would only reconnect if the daemon was restarted.
I screwed with it for a couple days, but after actually restarting the
firewall, they have been running fine now for a few days.
 
I'm not sure if this is a problem with the IPsec server, related to
system uptime counters or something else entirely.  Previously, I have
had pfSense running on the same box for longer than 45 days with no
issues.  I'm due for an upgrade anyway...
 
Ted Crow
MCP/W2K
Information Technology Manager
Tuttle Services, Inc.

---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to