This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

UTM 9.601 - RED issues!

Since upgrading all our customers to 9.601, a bigger part of them are complaining about RED's re/disconnection in a no-pattern way.

It started for all of them just the night we upgraded to 9.601, and they all are on different ISP's and located different places around the country.

Been with Sophos support for 2 hours today, and now they escalated it to higher grounds.

Will return with an update....

Suspicious entries in the log - but all connected REDs do this before connection:

2019:03:06-15:15:38 fw01-2 red_server[17509]: SELF: Cannot do SSL handshake on socket accept from 'xxx.xxx.xxx.xxx': SSL connect accept failed because of handshake problems

2019:03:06-15:15:46 fw01-2 red2ctl[12420]: Missing keepalive from reds3:0, disabling peer xxx.xxx.xxx.xxx

I know the last line is written before the tunnel disconnects, because there was no "PING/PONG" answer...

One customer has 2 x RD 50, one 1 100% stable and the other fluctuates in random intervals - we replaced this with a new RED 50, but the same thing occurs.



This thread was automatically locked due to age.
Parents Reply Children
  • Good morning Aaron,

    yesterday I had a telephone conference with a distributor and his sophos techician.
    They told me that Sophos is going to solve the problem with 9.703-3 but still you have to have to get hands on it.
    Sophos published an image for RED´s and you have to flash the RED`s with it.
    And in combination with 9.703-3 the RED`s should be stabel.
    Before I start another test I asked them to give me more information how that flashing has to be done.
    The image has to be copied on a memory stick and then you have to flash it in a console session.
    But... not all memory sticks are compatible....?!?!
    I let you know if get the informations...

    Greetings
    Bruno

  • We updated from 9.702-1 to Version  9.703-3 the last days, but the Problems are still not solved!!!
    One of our Red15 (which has already been replaced a few month before due to these problems) is facing the same problems again since two weeks now. Also after the update to 9.703-3 the issues are still there.
    -connection loss, overflow happen, etc. etc. it also generates tons of emails -> red connection down / up /down / up

    The workaround at the moment is, disable the red and the appropriate interface, wait 5 to 10 minutes and enable it again. the red comes up, but it only lasts 2 - 3 days till the problem comes back.

    Flashing the REDs manually with a new Image? Seriously, this cant be a solution for a lot of customers out there.

  • FormerMember
    0 FormerMember in reply to RedVision81

    Hi  

    Apologies for the inconvenience caused.

    I'd request you PM me the support case number for further investigation.

    Thanks,

  • Bruno Schley said:

    ...
    Before I start another test I asked them to give me more information how that flashing has to be done.
    The image has to be copied on a memory stick and then you have to flash it in a console session.
    But... not all memory sticks are compatible....?!?!
    I let you know if get the informations...
    ...

    I would be happy too for any news regarding that problem. I cross my fingers, however myself I am on a stable basis with unified firmware 0. But with every update I get a strange feeling. 

    Best regards 

    Alex 

    -