- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Printer Friendly Page
SRX5308 tunnel freeze
- Mark as New
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
SRX5308 tunnel freeze
Hi,
I am using two SRX5308 for few years now with 16 IPV4 IPSEC tunnels each. I am running 4.3.3-6 firmware. For some weeks now, I can see kind of "freeze" of the tunnels. The SRX5308 does not mount them without any reasons. I did not modify anything in my configuration. The only solution I found is to reboot the SRX5308 which is not a good solution.
I am not using IPV6 and DHCP. When tunnels are stucks, the network and internet are still working as they should. I did not see anything special in the log and VPN logs.
Does anybody has an idea ?
Thank you
- Mark as New
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Re: SRX5308 tunnel freeze
Hi zarg,
Let us isolate the problem. Kindly answer the questions below:
a. Are both SRX5308 using firmware v4.3.3-6?
b. Was the tunnel working fine before the firmware has been upgraded to v4.3.3-6?
c. Is there an Inbound/Outbound "Any" rule configured in the Firewall rules?
d. Have you asked the ISP on both sites if there are any changes on their ends?
I look forward to your response. Welcome to the community!
Regards,
DaneA
NETGEAR Community Team
- Mark as New
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Re: SRX5308 tunnel freeze
Hi DaneA,
a) Yes both SRX5308 use 4.4.4-6
b) Yes
c) No rules
d) As far as I know nothing has changed
Since one week now I had only one problem on one of my SRX5308. Weeks before we had to reboot it twice per day...
- Mark as New
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Re: SRX5308 tunnel freeze
Hi @zarg,
@zarg wrote:
Since one week now I had only one problem on one of my SRX5308. Weeks before we had to reboot it twice per day...
So the problem is just on one of the SRX5308. After the firmware was upgraded to v4.3.3-6, did you perform a factory reset on the SRX5308 then reconfigure it from scratch? It is because its recommended to reset the unit to factory default settings after a successful firmware upgrade.
Are both SRX5308 acts as the main router on both sites? The Public WAN IP address should be registered on the firewall itself as this is recommended for VPN. You may perform a continuous ping test via the VPN tunnel on both sites as well then observed.
Regards,
DaneA
NETGEAR Community Team
- Mark as New
- Bookmark
- Subscribe
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Re: SRX5308 tunnel freeze
Hi,
No I did not perform a factory reset. I will try to do that.
Yes Both SRX5308 are main routers and public WAN are registered. I am using nagios to monitor both public and privates addresses
Thank you