Skip to main content

Network Tunnel drops connectivity on Jumpoint temporary fix, KB0021363 related

  • May 27, 2025
  • 6 replies
  • 246 views

We recently encountered a recurring issue impacting the accessibility of Jumpoints, which we have traced back to behaviors described in KB0021363. The root of the problem appears to be interference between the old and new network management features, particularly when IP assignments are modified either through binding on virtual machines' NICs or via IP changes on bare metal systems.

Observations

When these changes occur, the resulting network configuration across the multiple management interfaces becomes inconsistent. This inconsistency causes the Jumpoint to:

  • Attempt to resolve to its own address,

  • Become entirely unresolvable, or

  • Exhibit packet fragmentation or corruption during analysis.

Network inspection tools and bomgar logs show erratic behavior. Logs typically reveal incomplete packets or generalized packet errors, but offer no definitive indicators as to the root cause. The symptoms include:

  • Dropped connections,

  • Fluctuating tunnel availability,

  • Inconsistent routing behavior across subnet access attempts.

  • Handshake issues and/or outgoing traffic but none incoming 

Mitigation and Temporary Solution

To address this, we have transitioned our network tunnels to Red Hat servers. Since making this change, the system has remained stable and fully operational for over 10 days. Notably, we observed that when accessing different subnets simultaneously through the same Jumpoint on Red Hat systems, no issues arise. This suggests that Red Hat's network stack and management layer provide better compatibility or isolation between management interfaces under the conditions described.

Next Steps

We are continuing to test alternative Linux distributions and Windows configurations to identify reliable and compatible setups while awaiting a formal patch or update, any other info from the community is greatly appreciated.

Recommendation

For teams encountering similar Jumpoint inaccessibility or tunnel instability, consider testing with Red Hat or other Linux distro.

6 replies

DMITRI
BeyondTrust Employee
  • BeyondTrust Employee
  • May 30, 2025

Thank you for the detailed update and analysis


Forum|alt.badge.img+3
  • Apprentice
  • July 23, 2025

We are facing similar issues with a customer installation with the latest release. Can BT confirm this is a bug and when will it be fixed.


  • Author
  • Apprentice
  • October 30, 2025

We are facing similar issues with a customer installation with the latest release. Can BT confirm this is a bug and when will it be fixed.

It is not a Beyondtrust bug but a windows OS issue on how it handles routing and IP bridging calls/requests, I would what worked for us is switching over to RedHat server it even allows you to tunnel to different subnets.


Forum|alt.badge.img+3
  • Apprentice
  • October 31, 2025

Thanks Matsu for your explanation. Are you BT staff? Why would BT then release this feature on Windows if it is not working properly.


  • Rising Star
  • October 31, 2025

Thanks Matsu for your explanation. Are you BT staff? Why would BT then release this feature on Windows if it is not working properly.

Yea I’m going to have to agree here. It may well be a Windows issue but the bottom line is that BT supports jumpoint servers installed on Windows so they would have to either end that support or find a workaround to make it work in a newer version. 


  • Author
  • Apprentice
  • November 3, 2025

Thanks Matsu for your explanation. Are you BT staff? Why would BT then release this feature on Windows if it is not working properly.

Sadly I am not, I've been part of a software development company and I understand its hard to account for all issues regarding how other software will function, as it stands today I know this wouldn't be a Beyondtrust only situation, from this issue we found other (non Beyondtrust) software with similar issues (some zero trust solutions, etc), also it seems easier to install a linux jumpoint and implement the network tunnel, it appears to be working for some people on windows (probably other versions) or when running only one connection, hopefully it'll be fixed soon.