Project

General

Profile

Actions

Bug #3177

closed

Dynamic IPsec endpoints not added in rules.debug

Added by Seth Mos about 8 years ago. Updated about 8 years ago.

Status:
Resolved
Priority:
Urgent
Assignee:
-
Category:
Rules / NAT
Target version:
Start date:
09/03/2013
Due date:
% Done:

100%

Estimated time:
Plus Target Version:
Release Notes:
Affected Version:
2.1
Affected Architecture:

Description

On boot the Dynamic DNS endpoint rules for IPsec tunnels with the DynDNS name are not added to rules.debug.

This caused all VPN tunnels with a dynamic hostname unable to establish on boot.

more /tmp/rules.debug
  1. ERROR! Unable to determine remote IPsec peer address for dynhost-ddns-router.dnsalias.net

Manually running /etc/rc.filter.configure reruns the filter configure process, after which the tunnels establish again.
First seen on a June 17th Snapshot.

Odly enough all the required IPsec endpoint information is filled out in the required racoon.conf files.

Actions #1

Updated by Ermal Luçi about 8 years ago

  • Status changed from New to Feedback
  • % Done changed from 0 to 100
Actions #2

Updated by Ermal Luçi about 8 years ago

Actions #3

Updated by Seth Mos about 8 years ago

  • Status changed from Feedback to Resolved

Yep, that fixes it. Confirmed

Actions

Also available in: Atom PDF