Hi Arun,

> Due to this , each Phase1 rekey is like tearing down existing session
> and setting up new one

By default, strongSwan uses a reauthentication procedure to verify the
credentials. This reauthentication establishes the whole IKE_SA from
scratch.
To use normal rekeying, add

   reauth=no

to your configuration.

Regards
Martin


_______________________________________________
Users mailing list
Users@lists.strongswan.org
https://lists.strongswan.org/mailman/listinfo/users

Reply via email to