Hi Team,
Would like to inform you that last couple of days VPN connectivity with our spoke site to our Hub sites were down, but yesterday it is came up again, as per checking event logs, we can see there is a msg FIPS mode disabled, after this tunnel connection is showing true (UP), could you please describe what was the issue and how it resolved, and if we receive the similar issue so what T/S steps we have to follow, thanks.
Try this setup.
Hi Alema,
We are using auto vpn setup for our every sites.
Refer the documentation.
Thats just a informational message. You see it always when you f.e. reboot your device or enable (auto)vpn. It doesnt have anything to do with your root cause.
I would advice you to create a meraki support case to help you finding the issue
Hi, I already logged the case with Meraki support team they sent this information.
Hello Devendra,
Thank you for that information. It seems that your device is experiencing a rare but known issue that causes the MX68 device to reboot randomly on the firmware version it is currently on.
Are you referring to AutoVPN, non-meraki VPN, or client based VPN, or something else?
Hi Philip,
This is AutoVPN.
Does the WAN interface in your hub have a private IP address by chance, and is sitting behind a device doing NAT?
If so, configure a UDP port forward to the hub and configure AutoVPN to use it, and the problem will never happen again.
Hi Philip,
I apologize for the late reply.
Our Hub WAN interfaces are having public IP addresses, actually we are having two hubs in active & standby mode, traffic goes from our primary hub and if there is any issue with primary hub traffic moves to secondary hub, all remote sites established VPN tunnel connection with both the Hub's, and for NAT traversal we use Automatic option.