[strongSwan] ipsec statusall: missing number of packets output

Tobias Brunner tobias at strongswan.org
Fri May 25 12:00:21 CEST 2018


Hi Marco,

> thanks for the explanation. Indeed that policy was problematic:
> packets were going out, but not viceversa.

Sounds strange, policies should not just disappear.

> is it enough knl = 3 ?

Set it to 2, with 3 your log will only fill up with binary dumps of
kernel messages.

Regards,
Tobias


More information about the Users mailing list