Project

General

Profile

Bug #3177

Dynamic IPsec endpoints not added in rules.debug

Added by Seth Mos almost 7 years ago. Updated almost 7 years ago.

Status:
Resolved
Priority:
Urgent
Assignee:
-
Category:
Rules / NAT
Target version:
Start date:
09/03/2013
Due date:
% Done:

100%

Estimated time:
Affected Version:
2.1
Affected Architecture:

Description

On boot the Dynamic DNS endpoint rules for IPsec tunnels with the DynDNS name are not added to rules.debug.

This caused all VPN tunnels with a dynamic hostname unable to establish on boot.

more /tmp/rules.debug
  1. ERROR! Unable to determine remote IPsec peer address for dynhost-ddns-router.dnsalias.net

Manually running /etc/rc.filter.configure reruns the filter configure process, after which the tunnels establish again.
First seen on a June 17th Snapshot.

Odly enough all the required IPsec endpoint information is filled out in the required racoon.conf files.

Associated revisions

Revision bee7cd82 (diff)
Added by Ermal Luçi almost 7 years ago

Resolves #3177. Do a filter reconfigure if the dynds ipsec hosts are present and being reloaded.

Revision 7cb3f7d2 (diff)
Added by Ermal Luçi almost 7 years ago

Resolves #3177. Do a filter reconfigure if the dynds ipsec hosts are present and being reloaded.

History

#1 Updated by Ermal Luçi almost 7 years ago

  • Status changed from New to Feedback
  • % Done changed from 0 to 100

#2 Updated by Ermal Luçi almost 7 years ago

#3 Updated by Seth Mos almost 7 years ago

  • Status changed from Feedback to Resolved

Yep, that fixes it. Confirmed

Also available in: Atom PDF