Multiple IPsec connections of a single configuration

Options
Abudef
Abudef Posts: 3 image  Freshman Member
First Comment Friend Collector Seventh Anniversary

Hello,

I use Zyxel FLEX 100 with firmware 5.41.

I noticed multiple IPsec connections of a single configuration. It looks like this in the VPN stats monitor:

obrazek.png

Why there are multiple connections for the MASTER_VPN_VLAN200 configuration? Any advice is welcome, thank you.

There are 2 configuration using this IKEv2 gateway:

MASTER_VPN:

obrazek.png

MASTER_VPN_VLAN200:

obrazek.png

Gateway configuration:

obrazek.png

There is pfSense on the other side of the tunnel:

obrazek.png

Best Answers

  • PeterUK
    PeterUK Posts: 4,227 image  Guru Member
    250 Answers 2500 Comments Friend Collector Eighth Anniversary
    Answer ✓

    I think the problem is you have one gateway for the two VPN connections

    If you setup two gateways each with different encryption or local/remote ID for each VPN connection it should work better.

  • Abudef
    Abudef Posts: 3 image  Freshman Member
    First Comment Friend Collector Seventh Anniversary
    Answer ✓

    Thanks @PeterUK, that would be a solution too.

    Meanwhile, I found this option in the pfSense configuration, which seems to solve the issue:

    obrazek.png

    The similar option is also available in the Unifi Gateway Network app.

All Replies

  • PeterUK
    PeterUK Posts: 4,227 image  Guru Member
    250 Answers 2500 Comments Friend Collector Eighth Anniversary
    Answer ✓

    I think the problem is you have one gateway for the two VPN connections

    If you setup two gateways each with different encryption or local/remote ID for each VPN connection it should work better.

  • Abudef
    Abudef Posts: 3 image  Freshman Member
    First Comment Friend Collector Seventh Anniversary
    Answer ✓

    Thanks @PeterUK, that would be a solution too.

    Meanwhile, I found this option in the pfSense configuration, which seems to solve the issue:

    obrazek.png

    The similar option is also available in the Unifi Gateway Network app.