For more information regarding the security incident at F5, the actions we are taking to address it, and our ongoing efforts to protect our customers, click here.

Forum Discussion

Booli's avatar
Booli
Icon for Altostratus rankAltostratus
Jul 27, 2022

NO PING between ipsec interfaces

hi all .

i came across strange issue -

i have multiple ipsec tunnels on my F5 configured with  ipsec interface ips on both ends 

all remote ends are fortigate devices -

on all tunnels i can ping the remote tunnel ip with no issue 

but i have one tunnel (which is up) that i cannot ping the other sides ipsec intrface 

how can i debug this with cli ? 

any help with be appreciated greatly

 

2 Replies

  • this article has some info, but as the tunnel is up it feels you want to look a step further:

    https://support.f5.com/csp/article/K15344

    a packet capture showing the traffic enters the tunnel would be best. if it does then it might be the other end (FortiGate) which doesn't respond for some reason. a capture on that side would also be useful to check if it arrives.

  • Booli - If your post was solved it would be helpful to the community to select *Accept As Solution*.
    This helps future readers find answers more quickly and confirms the efforts of those who helped.

    Thanks for being part of our community.
    Lief