Ipsec via main GW stops work, Found old outbound SPI error in debug log
Today stop working ipsec vpn tunnel beetween ZW USG1100 & 1000.
Connection estabilished every some seconds, but no transfer traffic via it.
In debug logs many errors "Found old outbound SPI %id".
I can't see same errors in others identical scheme of ipsec.
Helps only manually set second vpn gw as main gw or reboot ZW1100.
This problem looks like our old problem https://businessforum.zyxel.com/discussion/2015/trouble-with-failover-ipsec-vpn-by-reconnect-to-second-gw#latest
But earlier we have problem with unexpected reboots every 2-3 days, and this is was very rare problem.
Now, than our ZW workes without reboots, this problem is becoming more common.
EDIT1: second site is off with same problem. Same error in logs, but we don't have reserv vpn in it.
EDIT2: on second site all normalizied after 3 hours without any config change
EDIT3: 3 more sites are off. What cause of this may be?
EDIT4: 5 sites are down. Need help! Add samples of ike and debug log.
- 7.8K All Categories
- 1.6K Nebula
- 55 Nebula Ideas
- 53 Nebula Status and Incidents
- 4.3K Security
- 217 Security Ideas
- 913 Switch
- 41 Switch Ideas
- 812 WirelessLAN
- 16 WLAN Ideas
- 5K Consumer Product
- 133 Service & License
- 261 News and Release
- 88 Success Stories
- 52 Security Advisories
- 6 Education Center
- 573 FAQ
- 273 Nebula FAQ
- 132 Security FAQ
- 73 Switch FAQ
- 72 WirelessLAN FAQ
- 7 Consumer Product FAQ
- 34 Nebula Monthly Express
- 69 About Community
- 40 Security Highlight