Hi,
i'm losing my mind and banging my head against the wall for last XXX months. I have failing IPSec connection which works (very) randomly.
When I first configured it it worked for some time without problems - until i rebooted the server. After playing again with configuration and fw rules, it started working again - until the next reboot.
I have two subnets (one VLAN on each router): 192.168.98.0/24 on router A and 192.168.99.0/24 on router B. The interesting thing is that the routers does not ping each other. But the situation is as follows:
- when pinging from router A to B: there is Tx counter increasing (ipsec => active peers), but not a single packet is returned. On router B there are both Tx and Rx counters increasing.
- when pinging from router B to A: there is Tx counter increasing, but no Rx on both sides. So the packets don't reach router A.
Tracert returns nothing usable - only timeouts. There is also nothing usable from netwatch (or i don't know how to use properly).
The configuration has been deleted and done again, from tutarials and from (proven) working configurations i use on two other networks. But there are two diferences:
- on side A there is other internet provider that i'm used to working with.
- side A has 6 static IP addresses and one dynamic (modem). The modem is configured in bridged mode so there is no NAT traversal.
Thank you and best regards.