Re: [Swan] VTI Deleted when peer goes down

2018-04-19 Thread Paul Wouters

On Fri, 13 Apr 2018, Craig Marker wrote:


Given peer A connecting to peer B…

If peer A’s internet connection goes down, after some time, the VTI for the 
IPsec connection on peer B will be destroyed — such that when peer A’s internet 
connection is
back, you have to run some ipsec commands to get peer B’s VTI back.

Is there a way to make a VTI persistent until you run ipsec auto —delete or 
something similar?


I believe Tuomo fixed this and the fix will be part of 3.24.

Paul
___
Swan mailing list
Swan@lists.libreswan.org
https://lists.libreswan.org/mailman/listinfo/swan


[Swan] VTI Deleted when peer goes down

2018-04-13 Thread Craig Marker
Given peer A connecting to peer B…

If peer A’s internet connection goes down, after some time, the VTI for the 
IPsec connection on peer B will be destroyed — such that when peer A’s internet 
connection is back, you have to run some ipsec commands to get peer B’s VTI 
back.

Is there a way to make a VTI persistent until you run ipsec auto —delete or 
something similar?

--
cm

___
Swan mailing list
Swan@lists.libreswan.org
https://lists.libreswan.org/mailman/listinfo/swan