Project

General

Profile

Actions

Bug #3177

closed

Dynamic IPsec endpoints not added in rules.debug

Added by Seth Mos about 11 years ago. Updated about 11 years ago.

Status:
Resolved
Priority:
Urgent
Assignee:
-
Category:
Rules / NAT
Target version:
Start date:
09/03/2013
Due date:
% Done:

100%

Estimated time:
Plus Target Version:
Release Notes:
Affected Version:
2.1
Affected Architecture:

Description

On boot the Dynamic DNS endpoint rules for IPsec tunnels with the DynDNS name are not added to rules.debug.

This caused all VPN tunnels with a dynamic hostname unable to establish on boot.

more /tmp/rules.debug
  1. ERROR! Unable to determine remote IPsec peer address for dynhost-ddns-router.dnsalias.net

Manually running /etc/rc.filter.configure reruns the filter configure process, after which the tunnels establish again.
First seen on a June 17th Snapshot.

Odly enough all the required IPsec endpoint information is filled out in the required racoon.conf files.

Actions

Also available in: Atom PDF