Peplink L2TP with IPSEC Hourly Disconnect

Update:
Ticket opened last week; Not making satisfactory progress so far. Currently ISP is suspect.

I have experienced the same issue with a 380 and different ISPs @ another site.

Hi Alex,

We are working with engineering team to check on the root caused that will trigger this problem. We need more time on this.

Thank you for your patient.

Was hoping the update to 6.3.2 build 3196 might fix this but it has not. Our Balance 20’s have been behaving this way since we implemented our first one… multiple customers with different ISP’s, always the LT2P VPN tunnel using the built-in Windows 7 VPN client.
I connect from my home to these customers and get the same disconnects, with tunnel uptimes ranging from 45 minutes to close to two hours, but the tunnel almost never stays up for longer than 2 hours.
We have a temperamental customer that’s really unhappy with this. We’d move everyone to PPTP but A. It’s less secure, B. It would involve reconfiguring almost a dozen other clients’ VPN configurations, and C. We shouldn’t have to, it would be nice to just get this problem fixed.

Is this worth opening a ticket for?

Hi,

Please open a ticket for the team to check. L2TP is a point to point connection, we need to further diagnose client/device end for the disconnection issue.

Thank You

I opened a ticket and support said they were aware of the issue but have idea when it will be fixed. I was unable to find any 3rd party software for Windows that does L2TP / IPSec tunneling to see if it makes a difference.

I’m using a PPTP vpn to a balance 20 and have the exact same issue. I always thought it was possibly something with my connection even though I have no issues with anything else. Apparently not.

We are fixing this issue now. But we need more time since this a major fixed. Please stay tuned with us.

We don’t encounter this problem with PPTP. Please open ticket for us to take closer look.

Please let me know if any beta releases become available that have this fix, if possible. Will be happy to test.

Sure! Thanks for your support!

Hello everyone, we are fully aware of this issue and after a long troubleshooting process, we have finally identified the problem and hopefully have fixed it (at least in our testing lab ), I’d like to invite you to try it out and let us know the result :slight_smile:

Below is the special firmware, version 6.3.2s062, which is based on 6.3.2 GA with the L2TP/IPsec fix applied.

Balance 20, 30:
http://download.peplink.com/firmware/plb30/fw-b20_30-6.3.2s062-build3233.bin [Download]](http://download.peplink.com/firmware/plb30/fw-b20_30-6.3.2s062-build3233.bin)
SHA-1: 40ae7fcfd170f4c60f37c1ae4ca696d979d7e860

Balance 210 hw2-3, 310 hw2-3:
http://download.peplink.com/firmware/plb310/fw-b210_310_hw2_hw3-6.3.2s062-build3233.bin [Download]](http://download.peplink.com/firmware/plb310/fw-b210_310_hw2_hw3-6.3.2s062-build3233.bin)
SHA-1: 489c60dda563d7bea75e7c607bc161faf3226636

Balance 305 hw1, 380 hw3-5, 580 hw1, 710 hw1-2, 1350 hw1:
http://download.peplink.com/firmware/plb700/fw-b305_380_580_710_1350-6.3.2s062-build3561.bin [Download]](http://download.peplink.com/firmware/plb700/fw-b305_380_580_710_1350-6.3.2s062-build3561.bin)
SHA-1: 6be7b0c8d51aa3db0cbbecfe9cd86b507a3a1f58

1 Like

The fix is working for us ! Thanks for sharing.

Is there a firmware version for 580 hw3?

Hi,

The reported issue should not affected to B580 HW3.

Thank You

OK. What I have seen is following problem with L2TP (BLP-580 hw3). Mayby, not the same issue.

If IPsec VPN is in aggressive mode and remote gateway IP address/host name is empty, then I cannot connect to L2TP VPN at all (totally halted). When I add any address to empty space, then L2TP starts to work OK. I was wondering if this has anything to do with this topic?

When IPsec address is empty, then IPsec VPN tunnel is stable (and L2TP is not working). But when address have name or IP number, then connection is constantly disconnecting and reconnection after 2min. Wierd?
When same modem and IPsec VPN tunnel is between a Cisco device, then tunnel is always stable.

  1. May I know the intermittent connection is referring to the point to point IPSec or the L2TP/IPSec?

  2. May I know what firmware version you are using?

I wish to reproduce the problem in my lab.

Thanks.

is there any new firmware to fix this problem for Balance One Core?

The affected models were listed here. We don’t face this problem on Balance One Core.

Please help to open ticket if you have similar issue. We need to take closer look.

Was the fix in this special firmware (6.3.2s062) included in firmware version 7.0.0? I am currently on 6.3.3 with a Balance 30 and experiencing this issue, so I am either going to downgrade to the special firmware or upgrade to 7.0.0 to try to resolve it. Which one would you advise?

Thanks,
Rob

The fixed for v6.3.2s062 was included in v7.0.0. v7.0.0 is recomended.