secnet-0.6.0 connection stalling

Stephen Early steve at assorted.org.uk
Thu Feb 27 12:50:44 GMT 2020


Apologies for this somewhat vague bug report; I haven't had much chance 
to diagnose the problem and I've had to revert to an earlier version of 
secnet.

I installed secnet-0.6.0 at five sites: those at location 'ipltd' in the 
sgo-vpn sites file.  Communication is mostly between a central site, 
'ur' and the other four.  All sites have static IPv4 and IPv6 addresses 
for the DNS names listed in the sites file.

Within 24 hours I started to receive reports that the central site was 
unable to communicate with the other sites.  Logging in to both ends, I 
discovered that packets sent from the central site were not being 
received at the remote site; however, sending a packet from the remote 
site to the central site restored connectivity in both directions.  This 
problem occurred with all the remote sites, although did not affect all 
of them at the same time.

There was nothing in the secnet logs at either end.  No keys had timed 
out.  Nothing was logged when connectivity was restored.

I downgraded secnet at the central site and one of the remote sites to 
the previously working version (0.4.5).  After a further 24 hours, there 
were still reports of connectivity problems between the central site and 
the sites still running version 0.6.0.  I've now downgraded all the 
sites to 0.4.5.

Would it be helpful for me to try version 0.5.1 at some or all of the 
sites?  Is there anything else that it would be helpful for me to do?

Steve





More information about the sgo-software-discuss mailing list