27-Jul-2022 02:50
hi all .
i came across strange issue -
i have multiple ipsec tunnels on my F5 configured with ipsec interface ips on both ends
all remote ends are fortigate devices -
on all tunnels i can ping the remote tunnel ip with no issue
but i have one tunnel (which is up) that i cannot ping the other sides ipsec intrface
how can i debug this with cli ?
any help with be appreciated greatly
31-Jul-2022 04:43
this article has some info, but as the tunnel is up it feels you want to look a step further:
https://support.f5.com/csp/article/K15344
a packet capture showing the traffic enters the tunnel would be best. if it does then it might be the other end (FortiGate) which doesn't respond for some reason. a capture on that side would also be useful to check if it arrives.
15-Aug-2022 11:53
@Booli - If your post was solved it would be helpful to the community to select *Accept As Solution*.
This helps future readers find answers more quickly and confirms the efforts of those who helped.
Thanks for being part of our community.
Lief