[Openswan Users] Duplicate ESP SAs being created

Paul Wouters paul at xelerance.com
Fri Feb 2 14:53:46 EST 2007


On Fri, 2 Feb 2007, Mike Horn wrote:

> Thanks Paul.  I haven't seen this issue in other IPsec devices, is there
> anyway to delete the first set of Sas (since they won't be used) once the
> second set has been negotiated?

I assume that when you send a DELETE command, the other end, having auto=start,
will start its own new connection again, and you re-state the problem.

Paul


More information about the Users mailing list