Solved

Firebox SOHO 6tc dropping VPN

Posted on 2004-10-06
6
503 Views
Last Modified: 2010-04-08
I have a pair of Firebox Soho 6tc's located in different places in the country VPNed with a few AxxisAC300 firewalls.  For some reason, the VPN tunnel between here (Axxis) and one of the Soho 6tc's keeps dropping over and over, forcing me to manually disable the VPN setting in my firewall here and re-enable it to rebuild the VPN tunnel.  What's really wierd is the link between that Soho 6tc and A DIFFERENT Axxis (in another location) never drops.  It's the same brand/model device as here.  A temporary solution to route through that Axxis box, so now the users behind the Soho 6tc are being routed through an extra VPN hop just to get to here.  Since an exchange server is located here I have no doubts it will negatively impact performance, but I can't think of another solution.  All firewalls have the latest firmware and all are configured correctly.  The VPN keeps dying.  Eventually the plan is to replace all Axxis firewalls with Fireboxes (the one here will be replaced with a Firebox x700) so I'm sure Firebox -- Firebox VPN will be very stable.........but until then I need a solution that will save me from having to rebuild the VPN tunnel almost every day (sometimes several times per day) without having to rely on a multihop VPN schema.

Lots of points so go for it :)
0
Comment
Question by:aaron240
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
  • 2
6 Comments
 
LVL 2

Expert Comment

by:fendermb4
ID: 12370947
Are the VPN's in aggressive mode? Are they all configured the same?  Are you using IP addressing or host names for peer addresses?  Does each device only have 1 tunnel?

What are the various provider types (DSL, serial?)
0
 
LVL 2

Expert Comment

by:fendermb4
ID: 12504682
Any input on this?
0
 

Author Comment

by:aaron240
ID: 12586527
Thanks for the feedback fendermb4 but the solution was not readily apparent so we just migrated to the new Firebox. So far so good.
0
 

Author Comment

by:aaron240
ID: 12796304
Solved. Question can be closed.
0
 

Accepted Solution

by:
CetusMOD earned 0 total points
ID: 15934945
PAQed with points refunded (500)

CetusMOD
Community Support Moderator
0

Featured Post

Free Tool: ZipGrep

ZipGrep is a utility that can list and search zip (.war, .ear, .jar, etc) archives for text patterns, without the need to extract the archive's contents.

One of a set of tools we're offering as a way to say thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

To setup a SonicWALL for policy based routing to be used with the Websense Content Gateway there are several steps that need to be completed. Below is a rough guide for accomplishing this. One thing of note is this guide is intended to assist in the…
The DROP (Spamhaus Don't Route Or Peer List) is a small list of IP address ranges that have been stolen or hijacked from their rightful owners. The DROP list is not a DNS based list.  It is designed to be downloaded as a file, with primary intention…
The Email Laundry PDF encryption service allows companies to send confidential encrypted  emails to anybody. The PDF document can also contain attachments that are embedded in the encrypted PDF. The password is randomly generated by The Email Laundr…

738 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question