Hey folks,
we got a Problem with our XG and some UTMs in combination with RED tunnel. We designed a star-topology for all our managed devices (as MSP) with RED tunnel.
Lets Say:
Headoffice with (today) 23 Red Tunnel
23 Branch offices, or Branch Firewalls (UTM and XG Mixed)
We connect from our work via vpn to the headoffice XG on firmware 17.1.2-MR2. From there, we can reach each correctly connect RED device via a firewall rule. This is working pretty good! All XG firewalls are available and stable. The UTM ones loses the connection after like 30 seconds and tries to reconnect, but it only come online with the Uplink IP: 10.254.254.254 (ALL utms got a dedicated internet connection without any other routing between).
Maybe it should be in the UTM forum, sorry about that.
Logs of UTM (looping):
2018:09:05-12:17:51 suk-MASKED-fw1-1 red_client[8668]: Tunnel 16: Forking client handler
2018:09:05-12:18:38 suk-MASKED-fw1-1 red_client[6621]: CHILD Tunnel 16: performing initial keying.
2018:09:05-12:18:38 suk-MASKED-fw1-1 redctl[6691]: key length: 32
2018:09:05-12:18:38 suk-MASKED-fw1-1 redctl[6692]: key length: 32
2018:09:05-12:18:38 suk-MASKED-fw1-1 redctl[6694]: 80.MAS.KED.145 =
2018:09:05-12:18:38 suk-MASKED-fw1-1 redctl[6694]: 80.MAS.KED.145
2018:09:05-12:19:47 suk-MASKED-fw1-1 red_client[6621]: CHILD Tunnel 16: Socket was closed
2018:09:05-12:19:47 suk-MASKED-fw1-1 red_client[6621]: CHILD Tunnel 16: Unable to read PING response
2018:09:05-12:19:47 suk-MASKED-fw1-1 red_client[6621]: Tunnel 16: disconnected
2018:09:05-12:19:51 suk-MASKED-fw1-1 red_client[8668]: Tunnel 16: Forking client handler
2018:09:05-12:20:37 suk-MASKED-fw1-1 red_client[6793]: CHILD Tunnel 16: performing initial keying.
2018:09:05-12:20:37 suk-MASKED-fw1-1 redctl[7054]: key length: 32
2018:09:05-12:20:37 suk-MASKED-fw1-1 redctl[7055]: key length: 32
2018:09:05-12:20:37 suk-MASKED-fw1-1 redctl[7057]: 80.MAS.KED.145 =
2018:09:05-12:20:37 suk-MASKED-fw1-1 redctl[7057]: 80.MAS.KED.145
Firmware version on each UTM: 9.510-5
It worked great but suddenly it changed and we don't know why.
XG Tunnel: Firewall RED Server Legacy
UTM Tunnel: normal Client
CAUTION: its not about routing issues! its about the RED Tunnel Connection from all Branch office UTMS -> one Head office XG.
Can anyone explain or got an information about this?
Thanks in advance,
Chris
This thread was automatically locked due to age.