From: Dmitry A. <di...@da...> - 2006-07-08 22:54:23
|
> Unfortunately at the first even noted above the session hangs and I can only recover by stopping racoon; stopping ipsec; starting ipsec; and starting racoon. I have similar problems with Cisco ASA as endpoint. "Similar" not "exactly the same" - my tunnel dies periodically but without any noticeable recurence pattern. Usually it happens once a day or two days. But the bad thing about it is that since I turned debug log on it is working flawlesly for about a week so I can not collect evidences. Anyway, I also used to restart everything to bring tunnel back but later I discovered that racoonctl vd PEER.IP.ADDRESS Does the job - it kills tunnel, removes all association and the next packet triggers new IKE exchange which creates working tunnel. ------------------------------------------------------------------------ - Using Tomcat but need to do more? Need to support web services, security? Get stuff done quickly with pre-integrated technology to make your job easier Download IBM WebSphere Application Server v.1.0.1 based on Apache Geronimo http://sel.as-us.falkag.net/sel?cmd=3Dlnk&kid=3D120709&bid=3D263057&dat=3D= 121642 _______________________________________________ Ipsec-tools-devel mailing list Ips...@li... https://lists.sourceforge.net/lists/listinfo/ipsec-tools-devel |