Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - ttblum

#1
Virtual private networks / Duplicate IPSec SAs
October 06, 2021, 12:25:55 AM
Hello,

I am currently running pfSense. I have experienced a lot of trouble with over a hundred SAs being duplicated on VTI tunnels.  The problem was blamed upstream on StrongSwan:

https://redmine.pfsense.org/issues/10176
https://docs.netgate.com/pfsense/en/latest/troubleshooting/ipsec-duplicate-sa.html

Has OPNSense ever had similar issues with duplicate SAs on VTI tunnels?