<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN">
<html>
<head>
<meta http-equiv="content-type" content="text/html; charset=ISO-8859-1">
</head>
<body bgcolor="#ffffff" text="#000099">
<font size="-1"><font face="Arial">Hi,<br>
<br>
I'm seeing the following issue using Strong Swan the scenario is
a follows (test done yesterday March 9).<br>
<br>
</font></font><font size="2" color="#000099" face="Arial"><span
style="font-size: 10pt; font-family: Arial;">- ipsec is started
using charon daemon (IKEV2) (date at this moment is Jan 1 1970)
rekey set to yes ikelifetime and ipseclifetime set to 28800<br>
- Strong Swan creates the connections (date still is Jan 1 1970)<br>
- ran ipsec statusall the connections were created a this point.<br>
- few seconds passed<br>
- date get synced to March 9, this triggers Strong Swan to start
a rekey<br>
- after the rekey, Strong Swan deletes the IKE_SA but does not
re-try to create the IKE_SA<br>
- When running ipsec statusall command</span></font> <small>shows
SA as none</small> (never recovers)<br>
<br>
For this scenario I was expecting that Strong Swan try to recover
for this scenario.<br>
<br>
I just want to know if this issue is a known issue, if yes could you
pls provide where exactly the fix was made.<br>
<br>
Thanks in advance<br>
Eduardo Torres <br>
<br>
<br>
</body>
</html>