SBG3300 - receive IPSec no corresponding tunnel exists
jeffjohn1941
Posts: 71 Ally Member
Difficult to be explicit about this, but would appreciate any guidance.
My Site-to-site IPSEC VPN between uk office and branch (in France) no longer shows a VPN connection on the home SBG3300 status window. Connection (and Ping) does not function and Fr branch ZyWall shows caption above (receive IPSec ; no tunnel..) . The Zywall shows everything working, and accesses uk servers and pings without problems, but there is no reciprocal connection.
The setup has previously worked reciprocally over a few years, or more..I have 'Nailedup' and DPD on both devices.
Any previous experiences or suggestions most welcome!
Thanks Jeff Purcell
#SP_Jun_2019
My Site-to-site IPSEC VPN between uk office and branch (in France) no longer shows a VPN connection on the home SBG3300 status window. Connection (and Ping) does not function and Fr branch ZyWall shows caption above (receive IPSec ; no tunnel..) . The Zywall shows everything working, and accesses uk servers and pings without problems, but there is no reciprocal connection.
The setup has previously worked reciprocally over a few years, or more..I have 'Nailedup' and DPD on both devices.
Any previous experiences or suggestions most welcome!
Thanks Jeff Purcell
#SP_Jun_2019
Jeff J Purcell, New Forest, Uk and France, 44290
0
Accepted Solution
-
Bob! thanks for your interest. Amazing...Zywall rebooted, apparently, and today everything works! Full VPN exchange. Well that doesn't happen often, so fingers crossed!! jeff
Jeff J Purcell, New Forest, Uk and France, 442900
All Replies
-
Hello,
Two questions here:
1. What is the firmware of your SBG3300?
2. Which Zywall model is in the French branch?
I might have to test a bit and discuss with my colleagues before any further comments.0 -
thanks for your interest. All was well until I rebooted SBG3300. The VPN Status disappeared and remote access to Zywall5 was not available. Checking via Teamviewer, access from Zywall5 to SBG3300 (v1.01/AADY.9) was fine. The f/ware is unchanged at both ends. Some feature is making the link unstable. It happened once before and I activated KeepAlive and it re-established the links. However, on recently rebooting it failed. Could it be something to do with SA timeouts?Jeff J Purcell, New Forest, Uk and France, 442900
-
Hi Jeff,
I'm sorry but there is no Zywall5 from the product portfolio. Do you mean USG Zywall 50?
Also, could you please share the firmware version of the Zywall?
I would try to set up the same test scenario as yours and test it. Meanwhile, about the SA timeout, do you have any logs on either the Zywall or the SBG side for reference?
Thank you.
Bob0 -
thanks for your interest and support Bob, but I've received some medical news that keeps me out of action for quite a while; I'll get back to this when back home in 6-8 weeks.
p.s. ZyWall 5 is now well out of date or support.
thanks, JeffJeff J Purcell, New Forest, Uk and France, 442900 -
Bob! thanks for your interest. Amazing...Zywall rebooted, apparently, and today everything works! Full VPN exchange. Well that doesn't happen often, so fingers crossed!! jeff
Jeff J Purcell, New Forest, Uk and France, 442900
Categories
- All Categories
- 415 Beta Program
- 2.4K Nebula
- 144 Nebula Ideas
- 94 Nebula Status and Incidents
- 5.6K Security
- 237 USG FLEX H Series
- 267 Security Ideas
- 1.4K Switch
- 71 Switch Ideas
- 1.1K Wireless
- 40 Wireless Ideas
- 6.3K Consumer Product
- 247 Service & License
- 384 News and Release
- 83 Security Advisories
- 29 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.2K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 83 About Community
- 71 Security Highlight