Inconsistent display of active VPN connections

StefanZ
StefanZ Posts: 202  Master Member
First Comment First Answer Friend Collector Community MVP
edited July 2 in Security Ideas

I have 4 tunnels open from a FLEX50 to a FLEX200.

On the F50 they show up everywhere correctly when connected.

On the F200 only 2 of them show as active in Configuration > VPN > IPSec VPN >VPN Connection.

They all use the same IKEv2 gateway, all are nailed up and work just great.
Two go into LAN1/2, the other two do the same, but from a VLAN on the client side.

Screenshots attached.

PS: You guys need a forum for bugreports / minor stuff. I found like two dozen spelling- and grammar errors alone. ;-)

FLEX200:

FLEX 50:

1 votes

Active · Last Updated

Comments

  • StefanZ
    StefanZ Posts: 202  Master Member
    First Comment First Answer Friend Collector Community MVP

    Turns out it was some sort of system error.

    Some VPNs stopped to connect, some infos did not show in the Web UI anymore.

    Then finally I rebooted the device – and it did NOT come back on :-(

    This morning I checked the appliance in the office – the FLEX200 had RESET itself to factory default (my certificates are still there).

    And YES, I clicked "reboot", not "factory default reset".

    Lucky for me I still had a config backup from 2 days ago!

    Now I am struggling to get all the VPN back online – somehow the phase 1 proposals of some VPN mismatch all of a sudden.

  • StefanZ
    StefanZ Posts: 202  Master Member
    First Comment First Answer Friend Collector Community MVP

    Followup to the not connecting VPN:

    Turns out the certificate I created and used for that gateway would no longer be recognised!

    Other, older certs still work.
    Oddly, another newer cert also still works!

    I am not sure if it had to do with the recent firmware bug, but resetting itself on a manual reboot should NOT happen, right?!