<html>
<head>
<meta http-equiv="Content-Type" content="text/html; charset=utf-8">
</head>
<body style="word-wrap: break-word; -webkit-nbsp-mode: space; -webkit-line-break: after-white-space;" class="">
<br class="">
StrongSwan V5.2.0 is configured to be an IPsec VPN gateway on a Linux machine. A Mac laptop connects to it using the native Mac OS X v10.10.2 Cisco IPsec VPN client. The connection is established and works well for roughly 6,516 seconds (1 hour, 48 minutes,
36 seconds; or ~108 minutes) at which point the tunnel stops forwarding traffic. There is no outward indication on the Mac side that anything is wrong except that traffic is no longer reaching its destination.<br class="">
<br class="">
The test scenario is to initiate the IPsec tunnel on the Mac and then, from the Mac, ping a machine on the inside of the VPN gateway once per minute. This work for roughly 108 minutes and then fails. The failure is repeatable and has always stopped at about
the 108 minute mark.<br class="">
<br class="">
Attached files from the Linux machine are:
<div class="">
<ul class="">
<li class="">linux-message.log - the message log file </li><li class="">ipsec.conf file,</li><li class="">status.txt - the output of “strongswan statusall” command executed while the tunnel was fully operation.</li></ul>
</div>
<div class="">Attached from the Mac are:</div>
<div class="">
<ul class="">
<li class="">mac-system.log - the raccoon log file output from the Mac client.</li><li class="">racoon.conf - the raccoon configuration file</li></ul>
</div>
<div class="">In the Linux message log file, the tunnel started at timestamp 'Mar 4 14:45:05' and stopped forwarding traffic at roughly 'Mar 4 16:33:41'. The Mac system log file has the entire duration of the connection, which was started & terminated manually.
The Mac timestamps are 7 hours different from the Linux ones, but otherwise the clocks were synchronized (within a second or so).
<div class=""><br class="">
</div>
<div class="">I have struggled with this for days, experimenting with a number of configurations, and can not even find a work-around. Any help is very appreciated.</div>
<div class=""><br class="">
</div>
<div class=""><br class="">
</div>
<div class="">Ken</div>
<div class=""><br class="">
</div>
</div>
<div class=""><br class="">
</div>
<div class=""></div>
</body>
</html>