[strongSwan] VPN Going Down (EVENT_SA_EXPIRE)

Anupam Malhotra anupam.malhotra at u2opiamobile.com
Tue Dec 18 08:23:46 CET 2012


Hi All

 

I have a VPN connection which keeps going down after some time. We have to
take a restart every time the VPN goes down.

 

Below is the output on ipsec status (when connection is down):

 

ipsec status

 

000 "ussd1":
192.x.x.x/32===10.x.x.x[10.x.x.x]---10.x.x.x...203.x.x.x[203.x.x.x]===192.x.
x.x/24; erouted; eroute owner: #40

000 "ussd1":   newest ISAKMP SA: #41; newest IPsec SA: #40;

000

000 #40: "ussd1" STATE_QUICK_I2 (sent QI2, IPsec SA established);
EVENT_SA_REPLACE in 1396s; newest IPSEC; eroute owner

000 #40: "ussd1" esp.bfbd81e4 at 203.92.128.197 (0 bytes)
esp.c9bde68b at 10.130.91.178 (0 bytes); tunnel

000 #39: "ussd1" STATE_MAIN_I4 (ISAKMP SA established); EVENT_SA_EXPIRE in
553s

000 #41: "ussd1" STATE_MAIN_I4 (ISAKMP SA established); EVENT_SA_REPLACE in
2399s; newest ISAKMP

 

What is the relevance of EVENT_SA_EXPIRE? We see "EVENT_SA_EXPIRE in 553s"
in ipsec status output only when the connection goes down.

 

Please suggest.

 

Best Regards

Anupam Malhotra

 

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.strongswan.org/pipermail/users/attachments/20121218/6af43cb5/attachment.html>


More information about the Users mailing list