A new variant of an old issue - VPN profiles gone horribly wrong
OC300, 1.30.7
IF you cast your mind back to when 5.14 and 5.15 were first in Beta and release stages there was a persistent issue with VPN profiles disappearing but still active on the gateways. This seemed to be fixed with the later beta's and releases of 5.15
Tonight, i had a new variant of this!
I had need to change which WAN ports my VPN profiles were active on. So, taking the lazy approach, i simply edited each profile to change the active WAN port on each one. I had to juggle them around to different ports to eventually swap all the ones from WAN 4 to WAN 6, and the ones from WAN 6 to WAN 4 on my ER8411
After i had swapped them all around, and the gateway (ER8411) finished configuring, i gave it all a reboot for good measure
All the VPN profiles were working EXCEPT the one for the remote sites. The profile was still visible, just none of the sites would connect. I double and triple checked the actual VPN settings - all good.
I factory reset the gateway thinking a fresh adoption and configure would jolt it - no success
I took a backup and factory reset / restored the backup on the OC300 thinking maybe it didnt push the configs to the Gateway - no success
The only way i was able to fix it was to actually delete all the VPN profiles save a OC300 backup, factory reset the OC300, restore OC300 Backup without any VPN profiles, Factory reset ER8411, let the gateway reconfigure, then make every single VPN pforile from scratch. Everything immediately worked, all remote sites connected.
The best i can figure it - the profile was fine and visible, but when moving the WAN ports they are set to, somehow the controller didnt push this to the gateway - even after a gateway re-adopt.
Since everything has been factory reset i unfortunately dont think there are any useful logs i can pull for you. Perhaps you can replicate this internally.