Table of Contents

IPSec Tunnel Drops on Nautilus

*For the Fortigate

The Nautilus is offshore of American Samoa and is tunneling back to the HUB at URI using the same basic configurations as R/V Endeavor. We have been seeing periodic drops on the IPSec tunnel that don't align with what's happening on Endeavor, which could be related to the much longer path that Nautilus is taking.

We have been using Marlink beam 804 which downlinks in Napa Valley, CA. So although it's a very long path, the terrestrial network segment is no worse than California → RI which is not insurmountable, although this is a good stress test of using a non-optimal hub site.

Hardware on Nautilus

. Potential Causes

Troubleshooting Steps

HMAC validation issue

The next troubleshooting step involves disabling hardware IPSec acceleration and relying solely on software IPSec decoding. This approach will help determine whether the issue is related to hardware acceleration, as software decoding may offer different performance under the same conditions. Given that the VSAT system includes error correction, it's unlikely that packet corruption is occurring during transit, so focusing on hardware-related factors can provide more insight into the root cause of the IPSec dropouts.