Project

General

Profile

Actions

Bug #13585

closed

Multiple VPN Gateways will not completely start a boot.

Added by Keith Townsend almost 2 years ago. Updated over 1 year ago.

Status:
Closed
Priority:
Normal
Assignee:
-
Category:
Gateway Monitoring
Target version:
-
Start date:
Due date:
% Done:

0%

Estimated time:
Plus Target Version:
Release Notes:
Default
Affected Version:
2.7.x
Affected Architecture:

Description

This issue was discussed at forum thread [[https://forum.netgate.com/topic/175376/strange-gateway-issues-with-2-7-0-development-builds]].
Running a system two policy routed OpenVPN client gateways. It appears that upon boot a bad state is establish resulting in the second VPN connection being established but the second gateway never coming online. This gateway remains Offline and does not recover automatically. If the gateway service is restarted (dpinger) The second gateway does appear to come online but with high latency recorded across both VPN interfaces causing gateway group failovers. The only way for both gateways to work properly is to kill the single state that is established to the second gateways monitor IP. This allows the gateway to recover properly and latency levels and functions returns to normal. It appears that at boot a bad state is being created prior to the VPN being fully established. This issue is not present on any builds prior to 2.7.0


Files

netstat_RN4.txt (1.32 KB) netstat_RN4.txt Keith Townsend, 10/30/2022 10:55 AM
pfctl_VVSR.txt (37.1 KB) pfctl_VVSR.txt Keith Townsend, 10/30/2022 10:55 AM
pfctl_VVSS.txt (406 KB) pfctl_VVSS.txt Keith Townsend, 10/30/2022 10:55 AM
Actions

Also available in: Atom PDF