TCP traffic will go down after certificate renewal
search cancel

TCP traffic will go down after certificate renewal

book

Article ID: 386480

calendar_today

Updated On:

Products

VMware VeloCloud SD-WAN

Issue/Introduction

It's possible that TCP traffic will go down after certificate renewal.
This issue occurs when you set up Stateful Firewall .

Cause

This cause is that the VCMP tunnel is renewed and the firewall session is deleted when  the certificate is renewed. As the TCP session is not disconnected, the 3-way handshake will not start. The stateful firewall will block the traffic as it considers it to be incorrect as there is no 3-way handshake.

Resolution

To resolve this, you will need to disconnect and reconnect the TCP traffic. Alternatively, you can disable the stateful firewall.

Additional Information