We are having all the same symptoms above. All of our firewalls are running 2.2.4. Everything that has 2 phase 2 entries is on IKE v2. We are planning on changing the rest but we have 45 sites...it take a long time...
Has anyone figured this out? It's driving me crazy and causing everything to be so unreliable I've considered going back to 2.1.5 on all of my boxes even if it takes me a month to do it. It's that bad. I'm experiencing all of the OP's symptoms and nothing I can do will fix it short of pining from a non-pfsense box inside the LAN to a remote location. Doing this constantly will keep the connection solid, but that's about it. Any help would be appreciated. Thanks. _______________________________________________ pfSense mailing list https://lists.pfsense.org/mailman/listinfo/list Support the project with Gold! https://pfsense.org/gold
