[Openswan Users] DPD with domain name

wei minghu weiminghu at gmail.com
Wed Apr 26 15:56:02 CEST 2006


I found the dpd don't work when setting the remote end with domain name
which may change after some time. When the dpd timeout, it only connects
to the old IP, but the IP of remote peer has been changed.

I have searched the code of openswan, I found the remote address stored in
'struct connect' is 'struct ip_addr'. So, when the IP address of remote peer
changed, openswan cann't get it from DNS. The solution is restart the
connection using 'ipsec auto --replce conn_name' and 'ipsec auto
--rereadsecrets conn_name'.

I want to know if there is some better solution for this?

Thanks and regards.

-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.openswan.org/pipermail/users/attachments/20060426/eab9403e/attachment.htm

More information about the Users mailing list