<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 3.2//EN">
<HTML>
<HEAD>
<META HTTP-EQUIV="Content-Type" CONTENT="text/html; charset=us-ascii">
<META NAME="Generator" CONTENT="MS Exchange Server version 6.5.7036.0">
<TITLE>NETKEY SA lifetime</TITLE>
</HEAD>
<BODY>
<!-- Converted from text/rtf format -->
<P><FONT SIZE=2 FACE="Arial">Hi,</FONT>
</P>
<P><FONT SIZE=2 FACE="Arial">It appears that the SA lifetime (hard or soft) is not being set in the NETKEY SAD entries. What I'm mostly interested in is the "hard:" field for the SA. This is set using the -lh extension if you are adding the entry with "setkey add".</FONT></P>
<P><FONT SIZE=2 FACE="Arial">172.4.4.10 172.3.3.5</FONT>
<BR><FONT SIZE=2 FACE="Arial"> esp mode=tunnel spi=3597347870(0xd66b2c1e) reqid=16397(0x0000400d)</FONT>
<BR><FONT SIZE=2 FACE="Arial"> E: aes-cbc d31566a1 79a333a7 a25d3726 39cf9b7a 01f70645 5f87c0ff 98d3bbf3 5f054df9</FONT>
<BR><FONT SIZE=2 FACE="Arial"> A: hmac-sha1 614b29bc 58305971 9e2a104f 28f7cd10 6ff8fa12</FONT>
<BR><FONT SIZE=2 FACE="Arial"> seq=0x00000000 replay=32 flags=0x00000000 state=mature</FONT>
<BR><FONT SIZE=2 FACE="Arial"> created: Feb 5 12:04:44 2007 current: Feb 5 12:04:49 2007</FONT>
<BR><FONT SIZE=2 FACE="Arial"> diff: 5(s) hard: 0(s) soft: 0(s)</FONT>
<BR><FONT SIZE=2 FACE="Arial"> ^ ** this is the value that I'm looking for **</FONT>
</P>
<P><FONT SIZE=2 FACE="Arial"> last: hard: 0(s) soft: 0(s)</FONT>
<BR><FONT SIZE=2 FACE="Arial"> current: 0(bytes) hard: 0(bytes) soft: 0(bytes)</FONT>
<BR><FONT SIZE=2 FACE="Arial"> allocated: 0 hard: 0 soft: 0</FONT>
<BR><FONT SIZE=2 FACE="Arial"> sadb_seq=0 pid=10405 refcnt=0</FONT>
</P>
<P><FONT SIZE=2 FACE="Arial">Is there any way see the SA lifetime other than looking in the tunnel configuration? Thanks! </FONT>
</P>
<P><FONT SIZE=2 FACE="Arial">-mike</FONT>
</P>
</BODY>
</HTML>