[Openswan Users] Prevent Connection Timeout

Sebastian Ries sebastian.ries at dtnet.de
Wed Jan 24 08:51:40 EST 2007


Hi again

> I have a VPN connected over two OpenSwan Gateways.
> The connection comes up clearly and works as expected.
>
> But after a while (over night) the connection is down and the only way I
> know to open it again is to restart both (!) ipsec-deamons.
> (There is no traffic on the tunnel during this time)

I tested if the tunnel would stay up when there is traffic on it...
Therefore I added a ping to my crontab every three minutes. This did not make 
a difference.
The next day (today) the tunnel is down again.
>
> I found out that the connection is not really down, but in a "HOLD" state.
>
> I guess it is something like a timeout but how can I configure OpenSwan to
> reenable the connection when traffic occures?
>
> Running:
> Linux Openswan U2.2.0/K2.6.16.20-ipsec (native)
> (Debian sarge-packages)
> on both gateways

Does anyone have an idea how to solve this?
I need a tunnel that is continously up (and maybe restarts on a connection 
problem).
Is there a way to archieve this with this setup?

Regards
Sebastian Ries

-- 
------------------------------------------------------------
DT Netsolution GmbH -  Talaeckerstr. 30 -  D-70437 Stuttgart
Tel: +49-711-849910-36               Fax: +49-711-849910-936
WEB: http://www.dtnet.de/     email: Sebastian.Ries at dtnet.de


More information about the Users mailing list