This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Upgrading from V16.05.MR9 to v17.0.6 MR6 and IPSEC Site to site

We are planning to upgrade from V16.05.MR9 to v17.0.6 MR6.

 

Is it required to re-create IPSEC VPN ikev1 settings after upgrade or should in-place upgrade work ?



This thread was automatically locked due to age.
Parents
  • I have tested it in non-production environment and the IPSEC configuration is migrated over to v17.0.6 MR6 automatically. I can't test the IPSEC tunnels without using it in production.

     

    Please share your experience if you are running IPSEC site-to-site with NATed subnets and ikev1 in production environment with v17.0.6 MR6.

     

    Are there any known IPSEC bugs in v17.0.6 MR6 ?

  • For known bugs, do your homework and consult Sophos' website and forums.  As far as I am concerned, our VPN is down many times a day.  Sometime because of heavy traffic, many times without valid excuses.  IKE v2 is supposed to manage dead connections, among other features.  We have upgraded our internet connection at great cost to palliate that situation with not much success.

    Milage may vary as they say.

Reply
  • For known bugs, do your homework and consult Sophos' website and forums.  As far as I am concerned, our VPN is down many times a day.  Sometime because of heavy traffic, many times without valid excuses.  IKE v2 is supposed to manage dead connections, among other features.  We have upgraded our internet connection at great cost to palliate that situation with not much success.

    Milage may vary as they say.

Children
No Data