OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
weird vpn dropouts ...

From: Stefan Sczekalla-Waldschmidt (stefan.sczekallagkk.de)
Date: Thu Mar 02 2006 - 05:04:20 CST


Hi,

I'm facing a problem where a vpn-tunnel fails for 1 to approx. 3 Secs.
every few minuntes.

we have - well quite successful established a ipsec-vpn-mesh with
Carp-failover across our four locations.
While the connection between three members of the mesh runs fine - we
have a problem with our fourth member.

We are noticing Paketlosses for 1..3 Seconds every few minutes for
Paktets traveling trough the VPN-Tunnel to this mesh-member and the
network behind.

A Ping to the external Carp address of this remote member shows no
packet losses.

I already tryed to disable the Packet-Filter - without any change.

When reading man isakmpd - Im feeling somewhat lost about a useful debug
seeting - a "-d DA=99" gives way to much information.

OpenBSD Version is 3.8

I'm looking for Tips for further diagnostics.

Kind regards,

Stefan