OPNsense Forum

Archive => 21.7 Legacy Series => Topic started by: fog on August 28, 2021, 11:33:59 am

Title: Routed Ipsec failed if last digit of local ip is greater than 32
Post by: fog on August 28, 2021, 11:33:59 am
Hi,
an error occurs if the last digit of the Local Address in phase 2 of a routed ipsec vpn is greater than 32. The General Log show an invalid subnet mask:
Code: [Select]
opnsense[59451] /vpn_ipsec.php: The command '/sbin/ifconfig 'ipsec1' 'inet' '10.36.238.100/-68' '10.36.238.1'' returned exit code '1', the output was 'ifconfig: 10.36.238.100/-68: bad value (width invalid)'

It works with 10.36.238.2 .. 10.36.238.32.
see more errors in https://forum.opnsense.org/index.php?topic=22886.msg117655#msg117655 (https://forum.opnsense.org/index.php?topic=22886.msg117655#msg117655)

The Audit Health show no problems:
Code: [Select]
***GOT REQUEST TO AUDIT HEALTH***
Currently running OPNsense 21.7.1 (amd64/OpenSSL) at Sat Aug 28 11:17:10 CEST 2021
>>> Check installed kernel version
Version 21.7.1 is correct.
>>> Check for missing or altered kernel files
No problems detected.
>>> Check installed base version
Version 21.7.1 is correct.
>>> Check for missing or altered base files
No problems detected.
>>> Check for missing package dependencies
Checking all packages: .......... done
>>> Check for missing or altered package files
Checking all packages: .......... done
>>> Check for core packages consistency
Core package "opnsense" has 66 dependencies to check.
Checking packages: .................................................................... done
***DONE***

Regards,
fog
Title: Re: Routed Ipsec failed if last digit of local ip is greater than 32
Post by: bimbar on August 28, 2021, 01:09:09 pm
See https://forum.opnsense.org/index.php?topic=23901.0
Title: Re: Routed Ipsec failed if last digit of local ip is greater than 32
Post by: bimbar on August 30, 2021, 01:44:17 pm
@Devs: is this going to be fixed?
Title: Re: Routed Ipsec failed if last digit of local ip is greater than 32
Post by: Carool on August 30, 2021, 04:51:46 pm
 :o :o
Title: Re: Routed Ipsec failed if last digit of local ip is greater than 32
Post by: bartjsmit on August 30, 2021, 05:22:21 pm
@Devs: is this going to be fixed?
You'll want to you submit it here: https://github.com/opnsense