Re: [strongSwan] regarding "reauthenticating IKE_SA due to address change"

2011-08-02 Thread Tobias Brunner
Hi Ujial, > Interface eth1 ipaddress is given as : 10.29.11.66 /16 and the viratual > ip address 10.29.11.67/16 . The tunnels as follows > > 1)10.29.11.66<-->10.29.11.36 > 2)10.29.11.67<-->10.29.11.36

Re: [strongSwan] regarding "reauthenticating IKE_SA due to address change"

2011-07-28 Thread Tobias Brunner
Hi Ujjal, > 1) Is reauth=no has any effect or i am doing some wrong configuration The reauth option allows to configure whether an IKE_SA is rekeyed or reauthenticated once it is about to expire (ikelifetime/margintime). It has no effect on other circumstances where a reauthentication might b

[strongSwan] regarding "reauthenticating IKE_SA due to address change"

2011-07-27 Thread ujjal sikdar
> > Hi > > I am doing one test scenario where the ip address are dynamically > configured on the interface .Due to this what i observe is , > reauthentication of ike is happening due to address change, though the > configured ip is not related to any configured policy . > Is it possible to disabl