On Thu, 27 Sep 2018, Xinwei Hong wrote:

I have a VPN which would fail every 8 hours or so, at the time of phase 1 IKE 
expiration. Here is the config file:
config setup

I don't see any errors in the logs. But 8h sounds like a lifetime /
rekey issue. Maybe try default ikelifetime and salifetime values?
Or set the ikelifetime= shorter than the salifetime ?

Paul
_______________________________________________
Swan mailing list
[email protected]
https://lists.libreswan.org/mailman/listinfo/swan

Reply via email to