[strongSwan] charon fail to add policies after recovering from crash

Martin Willi martin at strongswan.org
Mon Aug 15 09:55:39 CEST 2011


> 06[KNL] creating rekey job for ESP CHILD_SA with SPI cbe46239 and reqid {458}
> 05[DMN] thread 5 received 11
> 05[DMN] killing ourself, received critical signal

I think it would make much more sense to fix the bug causing the crash.
If possible, please upgrade to 4.5.3 and attach GDB to see where the
SIGSEGV comes from (e.g. using ipsec start --attach-gdb).

> But then at the beginning of "ipsec reload" I saw these log entries:
> xx[CFG] received stroke: delete connection 'site_XY'.
> May be is the delete connection that clean things up?  

Reload deletes (by starter) the configuration in charon and afterwards
adds a new instance. But the reason why a policy can't be added is
probably because it still exists after the crash.


