Forum Discussion

Booli's avatar
Booli
Icon for Altostratus rankAltostratus
Jul 27, 2022

NO PING between ipsec interfaces

hi all .

i came across strange issue -

i have multiple ipsec tunnels on my F5 configured with  ipsec interface ips on both ends 

all remote ends are fortigate devices -

on all tunnels i can ping the remote tunnel ip with no issue 

but i have one tunnel (which is up) that i cannot ping the other sides ipsec intrface 

how can i debug this with cli ? 

any help with be appreciated greatly

 

2 Replies

  • this article has some info, but as the tunnel is up it feels you want to look a step further:

    https://support.f5.com/csp/article/K15344

    a packet capture showing the traffic enters the tunnel would be best. if it does then it might be the other end (FortiGate) which doesn't respond for some reason. a capture on that side would also be useful to check if it arrives.

  • Booli - If your post was solved it would be helpful to the community to select *Accept As Solution*.
    This helps future readers find answers more quickly and confirms the efforts of those who helped.

    Thanks for being part of our community.
    Lief