[strongSwan] ipsec reload fails to kill obsolete connections?

ALLOYER Yves alloyer at ipanematech.com
Wed Mar 18 17:16:52 CET 2015


Hi all,

I have /etc/ipsec.conf and /etc/ipsec.secrets files that are generated.
Connections and credentials appear and disappear in these files.
When we generate a new version of these files we issue an ipsec reload (not just update).
I'd expect that to kill connections that are not relevant anymore, but this is not the case
ipsec statusall shows them still as defined and up and running.
Environment is linux 3.2 (embedded distro, ELinOS, glibc), strongswan 5.2.2.
What am I doing wrong?

TIA,
Yves


More information about the Users mailing list