Issues with IPSEC tunnel between ix10 and SonicWall TZ370

I have built an ipsec tunnel between an ix10 using FirstNet and a SonicWall TZ370. The tunnel comes up, lasts about 2 minutes, and then resets. The cellular signal is good and the cellular connection has been up for 15+ hours at this time. I’m seeing no clues in either logs that are pointing to a particular cause other than it suddenly can’t see the other side.

[F01:P05] Feb 22 15:47:04 Digi IX10 ipsec: Cannot up tunnel Test_Grawn_Office_policy0 (Test_Grawn_Office) (try 1, retry in 5s)
[F03:P05] Feb 22 15:47:09 Digi IX10 netifd: Interface ‘ipsec_Test_Grawn_Office’ has lost the connection
[F03:P05] Feb 22 15:47:09 Digi IX10 netifd: Network device ‘ipsec_Test_G000’ link is down
[F00:P06] Feb 22 15:47:09 Digi IX10 kernel: DROP (raw): IN=wwan0.1 OUT= MAC= SRC=192.168.168.168 DST=192.168.2.1 LEN=60 TOS=0x00 PREC=0x00 TTL=128 ID=55132 PROTO=ICMP TYPE=0 CODE=0 ID=2 SEQ=28437
[F10:P06] Feb 22 15:47:09 Digi IX10 ipsec: 09[IKE] <Test_Grawn_Office_policy0|3363> deleting IKE_SA Test_Grawn_Office_policy0[3363] between 107.xx.xx.118[107.xx.xx.118]…96.xx.xx.238[96.xx.xx.238]
[F03:P06] Feb 22 15:47:09 Digi IX10 ipsec: 09[IKE] <Test_Grawn_Office_policy0|3363> deleting IKE_SA Test_Grawn_Office_policy0[3363] between 107.xx.xx.118[107.xx.xx.118]…96.xx.xx.238[96.xx.xx.238]
[F03:P05] Feb 22 15:47:09 Digi IX10 netifd: ipsec_Test_Grawn_Office (31600): deleting IKE_SA Test_Grawn_Office_policy0[3363] between 107.xx.xx.118[107.xx.xx.118]…96.xx.xx.238[96.xx.xx.238]

Non-stop pings to the 96 router never stop, but the tunnel goes down. Ideas? I have 40 of these to deploy.

Steve

Hi,

I would recommend you increase the verbosity of VPN debug on Digi.
Select Generic control flow for basic debugging.
https://www.digi.com/resources/documentation/digidocs/90002399/default.htm#os/ipsec-debug-t.htm?TocPath=Virtual%2520Private%2520Networks%2520(VPN)%257CIPsec%257C_____5
Then check the syslog on both sides.