Cross posting with https://forum.opnsense.org/index.php?topic=44897.0
due to the reason I still found no answer or clueI have a S2S IPSec
tunnel between an Opnsense (24.7.11) and a Fortigate 60F (current
FortiOS) device. Establishing a connection is ...
Thanks for your answer. OpnSense uses strongSwan as far as I know.Out of
curiosity, I tried the old IPSec legacy mode (historically this section
was for racoon IPsec which was also supported by StrongSwan but now
deprecated and the new MVC connection...
The lifetime settings match, I did check this more than once ;) I think
that the problem is with OpnSense, I did capture another log, see below.
But I don't know how to fix that.
Today there was a small hick up and I managed to capture a debug log. I
have to add that the downtime when the connection breaks is always
different. This time only minutes, sometimes its hours. Log
Fortigate:ike V=root:0: unknown SPI 55d18a0a 5
xxx....
Thanks for hint. I'll wait for the next hickup and post the debug log,
then I'll try your config changes to see if it changes anything.The
strange thing is that it didn't happen since I posted these messages,
still waiting for it