Hello Nellikka,
thank you for your reply.
ok, i see. i took out the route. seems promising now, i thought i could get both tunnels up simultaneously, but obviously that does not work.
office-box:
[Jul 10 13:54:24]<none>:500 (Responder) <-> 80.190.133.146:500 { 2e8bd7cb 41e0bb2f - 3fadf6c4 0219d080 [0] / 0xc79d83a0 } QM; Invalid protocol_id = 0
[Jul 10 13:54:24]QM notification `(null)' (40001) (size 8 bytes) from 80.190.133.146 for protocol Reserved spi[0...3]=92 d2 99 2
Jul 10 13:54:24 rt1 kmd[65052]: KMD_PM_SA_ESTABLISHED: Local gateway: 62.154.246.62, Remote gateway: 80.190.133.146, Local ID: ipv4_subnet(any:0,[0..7]=0.0.0.0/0), Remote ID: ipv4_subnet(any:0,[0..7]=0.0.0.0/0), Direction: inbound, SPI: 0x4feb162e, AUX-SPI: 0, Mode: Tunnel, Type: dynamic, Traffic-selector:
Jul 10 13:54:24 rt1 kmd[65052]: KMD_PM_SA_ESTABLISHED: Local gateway: 62.154.246.62, Remote gateway: 80.190.133.146, Local ID: ipv4_subnet(any:0,[0..7]=0.0.0.0/0), Remote ID: ipv4_subnet(any:0,[0..7]=0.0.0.0/0), Direction: outbound, SPI: 0x92d29921, AUX-SPI: 0, Mode: Tunnel, Type: dynamic, Traffic-selector:
Jul 10 13:54:24 rt1 kmd[65052]: KMD_VPN_UP_ALARM_USER: VPN ipsec-vpn-sdsl from 80.190.133.146 is up. Local-ip: 62.154.246.62, gateway name: ike-gate-sdsl, vpn name: ipsec-vpn-sdsl, tunnel-id: 131074, local tunnel-if: st0.1, remote tunnel-ip: 192.168.211.11, Local IKE-ID: 62.154.246.62, Remote IKE-ID: 80.190.133.146, XAUTH username: Not-Applicable, VR id: 0, Traffic-selector: , Traffic-selector local ID: ipv4_subnet(any:0,[0..7]=0.0.0.0/0), Traffic-selector remote ID: ipv4_subnet(any:0,[0..7]=0.0.0.0/0)
data center cluster:
Jul 10 13:54:24 rt1 kmd[65052]: KMD_PM_SA_ESTABLISHED: Local gateway: 62.154.246.62, Remote gateway: 80.190.133.146, Local ID: ipv4_subnet(any:0,[0..7]=0.0.0.0/0), Remote ID: ipv4_subnet(any:0,[0..7]=0.0.0.0/0), Direction: inbound, SPI: 0x4feb162e, AUX-SPI: 0, Mode: Tunnel, Type: dynamic, Traffic-selector:
Jul 10 13:54:24 rt1 kmd[65052]: KMD_PM_SA_ESTABLISHED: Local gateway: 62.154.246.62, Remote gateway: 80.190.133.146, Local ID: ipv4_subnet(any:0,[0..7]=0.0.0.0/0), Remote ID: ipv4_subnet(any:0,[0..7]=0.0.0.0/0), Direction: outbound, SPI: 0x92d29921, AUX-SPI: 0, Mode: Tunnel, Type: dynamic, Traffic-selector:
Jul 10 13:54:24 rt1 kmd[65052]: KMD_VPN_UP_ALARM_USER: VPN ipsec-vpn-sdsl from 80.190.133.146 is up. Local-ip: 62.154.246.62, gateway name: ike-gate-sdsl, vpn name: ipsec-vpn-sdsl, tunnel-id: 131074, local tunnel-if: st0.1, remote tunnel-ip: 192.168.211.11, Local IKE-ID: 62.154.246.62, Remote IKE-ID: 80.190.133.146, XAUTH username: Not-Applicable, VR id: 0, Traffic-selector: , Traffic-selector local ID: ipv4_subnet(any:0,[0..7]=0.0.0.0/0), Traffic-selector remote ID: ipv4_subnet(any:0,[0..7]=0.0.0.0/0)
trying now rerouting on both boxes when there is less traffic in the office.