This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

SFOS17GA - Broken failover group

I upgraded a couple XG to SFOS17GA.

I have the same problem on all of them with the VPN failover group.

I created two IPsec connections, using port2 and port4 (different ISP).
Both work if I enable then connect them by hand.

I created a failover group that uses both IPsec connections.

Problem 1: when I click on the red dot to enable the failover group (on IPsec page), I have a popup that says "failover group is enabled".
However, it's not. The dot stays red and the connections are not enabled/connected. "Inactive" is displayed next to their name.
I can click again and again and again on the red dot, same thing happens.

Problem 2: I rebooted the XG, to see if something different happens.
After reboot, on first try, clicking on the red dot enables the failover group (green dot).
However, the connections ("Active" displayed next to their name) never get connected.
I can not disable the failover group (timeout after clicking on green dot), I can get the connections to connect.

Am I the only one with this?



This thread was automatically locked due to age.
Parents Reply
  • As I didn't receive a reply after sending infos through PM, I opened a support case.

    Support told me that's a known bug (NC-29436), with a scheduled resolution in 17.1 MR2.

    I asked for some mitigation or a way to disable failover through console. I'm waiting a reply and I'll keep this thread updated.

Children