Quantcast
Channel: EdgeRouter topics
Viewing all articles
Browse latest Browse all 20028

Site-to-site IPSec broke when upgrading to 1.9

$
0
0

Hi,

 

I see many threads about this, but mostly all of them seem to mention "load balancing", which I am not using.

So i'm creating a new thread since it doesn't seem to fit with my issue.


I have tried deleting the entire "vpn"-config tree (delete vpn) and reconfiguring site-to-site using the GUI in 1.9, but even after that it doesn't connect. 

 

This is between an ERPoE and an ERLite.

 

viddy@edgy:~$ show vpn ipsec sa
(unnamed): #3330, CONNECTING, IKEv1, <hash removed>
local '%any' @ <ip removed>
remote '%any' @ <ip removed>
AES_CBC-128/HMAC_SHA1_96/PRF_HMAC_SHA1/MODP_2048
passive: ISAKMP_VENDOR MAIN_MODE

 

For the record i have "ipsec offload" enabled, if that's relevant.

 

This is the only sign i see of it trying to do anything at all. 

Would be nice if anyone could help me troubleshoot this! Thanks.

 


Viewing all articles
Browse latest Browse all 20028

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>