I have a HA setup that I am nearing completion on and putting into production but having an issue with an IPSec site-to-site VPN setup.
The VPN is configured to point to the CARP IP and this works as expected when on the primary.
When I put the primary into CARP maintainence mode, and the firewall fails over the the secondary firewall - The IPsec VPN tunnel takes a good 2+ minutes for traffic to switch over and pings to continue for example.
I have reviewed the policies and disabled MOBIKE but this has not make a difference unfortunately.
Many thanks
The VPN is configured to point to the CARP IP and this works as expected when on the primary.
When I put the primary into CARP maintainence mode, and the firewall fails over the the secondary firewall - The IPsec VPN tunnel takes a good 2+ minutes for traffic to switch over and pings to continue for example.
I have reviewed the policies and disabled MOBIKE but this has not make a difference unfortunately.
Many thanks
"