Help us enhance your Sophos Community experience. Share your thoughts in our Sophos Community survey.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

errno 17: File exists

Out of Nowhere our primary Node in a HA SG210 UTM Cluster went completely stupid.
100% CPU, full RAM and high SWAP Usage.
The Node was not reachable anymore but the underlying Linux seems to still have worked a bit and the Cluster did not failover!
We had to manually switch off the Primary to initiate a Failover.
And before anyone asks, No we do not have time to try things or analyize the failing node.
We have to be online 24/7.

Never had this problem before in my 10 years of UTM Usage.
It started with the latest Fimware 9.715-4
What a joke!

We have been offline for 24 hours because the location of the firewall is almost 500 km away.

Now we have the Problem that one of our IPSEC Tunnels plays On/Off Ping-Pong.
Here's the Log:

"S_xxxx" #18896: ERROR: netlink XFRM_MSG_NEWPOLICY response for flow tun.10000@<Firewall-IP> included errno 17: File exists

Any Idea how to fix this?



This thread was automatically locked due to age.
Parents
  • I thought I commented on this once before, but that might be a cert problem with that error code.  Are you using LetsEncrypt certs?

    OPNSense 64-bit | Intel Xeon 4-core v3 1225 3.20Ghz
    16GB Memory | 500GB SSD HDD | ATT Fiber 1GB
    (Former Sophos UTM Veteran, Former XG Rookie)

Reply
  • I thought I commented on this once before, but that might be a cert problem with that error code.  Are you using LetsEncrypt certs?

    OPNSense 64-bit | Intel Xeon 4-core v3 1225 3.20Ghz
    16GB Memory | 500GB SSD HDD | ATT Fiber 1GB
    (Former Sophos UTM Veteran, Former XG Rookie)

Children