I'm having trouble with a VPN between our Astaro 6.304 and a Nortel Contivity 1700.
It's established fine and sometimes it renegotiate fine, but most of the time it failes, and we have to restart it manually for it to get up.
From the log I can see that it suddenly has two IPsec tunnels open. The traffic goes in one tunnel and out the other, so there are a mismatch in the trafficflow.
Does anyone know what can cause this? I've got over 20 VPN tunnels that works just fine.
When I get problems, I find two 'EVENT_SA_REPLACE' lines in the VPN status log, instead of one, or one EVENT_SA_REPLACE and one EVENT_SA_EXPIRE.
This thread was automatically locked due to age.