NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.

Forum Discussion

PaulKulessa's avatar
PaulKulessa
Aspirant
Aug 27, 2024
Solved

PR60X Site to Site IPSEC Site to Site VPN frequently drops and will not restart automatically

I have two PR60X routers with an IPSEC Site to Site VPN set up.  The WAN links are AT&T fiber.  2 Gig on one end and 500 Gig on the other.  When the VPN is up, it works OK.  Unfortunately it frequent...
  • PaulKulessa's avatar
    PaulKulessa
    Sep 24, 2024

    I'm finally reporting back with my solution.  It did take some time for the engineers to figure this one out.

    I had two IPSec ports for Client to Site forwarded to my Synology NAS to do Client to Site VPN because there was not licensed needed for their VPN service.  And that VPN did work as long as I was on the internal network, but it would never connect from the outside.  Now I know that the Netgear PR60x firmware also needs these port for a reliable Site to Site VPN.  Once I disabled those two port forwarding entries the Site to Site VPN was stable. 

     

    Then I still left with the need for a Client to Site VPN.  the options for Client to Site VPN from Netgear at that time all needed a rather expensive, In My opinion, License. 

     

    Fortunately, shortly after we fixed the S2S VPN there was a firmware upgrade for the PR60x that included a VPN option from Wireguard, which is an open source no cost option.

     

    Well the Wireguard solution was extreamly easy to setup and it is working very well for me.  Thanks to the support tech for letting me know about it.

     

    I am a happy network camper now.