Hi all,
i'm experiencing a strange problem with a CCR1036 acting as L2TP / IPSec concentrator for about 10 RB750GL connecting in VPN.
The CCR is behind an ADSL modem router just like the 750s.
When configuring or installing for the first time the RBs there are no problems at all: everything works at the first attempt (all the RB750 are configured from the same "template" RB).
Here is the real problem: when there are internet connection issues, the CCR goes offline and, of course, all VPNs drop down...but if the CCR goes back online, VPNs don't reconnect. Well, some of them reconnect ("R" on L2TP server binding interface) but the VPN is not properly working (no traffic). In all the cases i am forced to reboot all the 750s...sometimes also their ADSL router must be rebooted!
This is a problem since client RBs are in most cases far from the server, so we have to call customers to manually reboot them.
Why is this happening?
It seems like the VPN connection remains pending after the CCR suddenly goes offline, and we are forced to reboot the RB to let it restart the L2TP/IPSec negotiation.
Any solution to prevent this kind of event? I'm thinking about a work-around such as a watchdog that forces the RB to reboot when the server IP is not reachable but i would like to have a better solution.
Any idea?
Thanks guys...