Quantcast
Channel: Sophos User Bulletin Board
Viewing all articles
Browse latest Browse all 14361

[8.910][BUG] ASG2ASG RED tunnel issues

$
0
0
I use since ASG8.3 a ASG2ASG RED Tunnel Interface in the uplink balancer to route specific traffic to remote sites (instead of static / policy routes). This scenario allows funny stuff as loadsharing/balancing traffic servicebased to a remote site via MPLS and a RED tunnel via Internet inclusive full failover capability. Nice stuff....

Since 8.910 the uplink balancer seems to break RED tunnel traffic, if the according RED interface is in the uplink interfaces group. The RED Interface always changes between "error" and "down" in the dashboard

Code:

2012:03:27-14:12:20 asg01 red_server[5574]: SELF: New connection from x.x.x.x with ID c3c2e..... (cipher AES256-SHA), rev1
2012:03:27-14:12:20 asg01 redctl[9573]: key length: 32
2012:03:27-14:12:20 asg01 redctl[9574]: key length: 32
2012:03:27-14:12:20 asg01 red_server[9572]: c3c2e77f55cfaa9: connected OK, pushing config
2012:03:27-14:12:20 asg01 red_server[9572]: c3c2e77f55cfaa9: command 'PING 0'
2012:03:27-14:12:20 asg01 red_server[9572]: c3c2e77f55cfaa9: PING remote_tx=0 local_rx=0 diff=0
2012:03:27-14:12:20 asg01 red_server[9572]: c3c2e77f55cfaa9: PONG local_tx=0
2012:03:27-14:12:20 asg01 red_server[5574]: SELF: (Re-)loading device configurations
2012:03:27-14:12:36 asg01 red_server[9572]: c3c2e77f55cfaa9: command 'PING 1'
2012:03:27-14:12:36 asg01 red_server[9572]: c3c2e77f55cfaa9: PING remote_tx=1 local_rx=0 diff=1
2012:03:27-14:12:36 asg01 red_server[9572]: c3c2e77f55cfaa9: PONG local_tx=1
2012:03:27-14:12:51 asg01 red_server[9572]: c3c2e77f55cfaa9: command 'PING 3'
2012:03:27-14:12:51 asg01 red_server[9572]: c3c2e77f55cfaa9: PING remote_tx=3 local_rx=0 diff=3
2012:03:27-14:12:51 asg01 red_server[9572]: c3c2e77f55cfaa9: PONG local_tx=4
2012:03:27-14:13:07 asg01 red_server[9572]: c3c2e77f55cfaa9: command 'PING 9'
2012:03:27-14:13:07 asg01 red_server[9572]: c3c2e77f55cfaa9: PING remote_tx=9 local_rx=0 diff=9
2012:03:27-14:13:07 asg01 red_server[9572]: c3c2e77f55cfaa9: PONG local_tx=9
2012:03:27-14:13:21 asg01 red_server[9572]: c3c2e77f55cfaa9: No in-tunnel frame for 60 seconds, exiting.
2012:03:27-14:13:21 asg01 red_server[5574]: c3c2e77f55cfaa9: disconnecting

As soon as I take out the RED interface of the uplink interfaces group (and use static routes) the RED tunnel comes up in the dashboard, but will restart again after 1 Minute

Code:

2012:03:27-14:13:21 asg01 red_server[9572]: c3c2e......: No in-tunnel frame for 60 seconds, exiting.
EDIT: Maybe the title should be changed to "ASG2ASG RED tunnel issues"...
EDIT2: The RED tunnel is between a ASG8.301 and UTM8.910

Viewing all articles
Browse latest Browse all 14361

Trending Articles