We managed to patch it setting the pfs group to none in the proposal but still looking why we are losing that packages, seems to be something related with ISP
In the first scenario I have multiple mikrotiks connected to "the main one (also a mikrotik)" via ipsec from different public ips and ISP providers also.
In the second one I have a L2TP server configured on the mikrotik and the clients uses map (mikrotik map) or software vpns
I have two scenarios: First scenario: 1 mikrotik behind an ISP router with the dmz pointing to the mikrotik giving me the logs I mentioned above. Second scenario: On my main mikrotik I have configured a server with L2TP over IPSEC in which the clients connect either using MAPs or by software and in ...
Hello, A week ago all my ipsec VPNs stopped working, I tried to reboot, change psk, change cert, use a backup... but still not working. In the logs the only thing related to ipsec its: "initiate new phase 1 (Identity Protection): local ip[port]<=>remote ip[port]" "the packet is retran...