[Openswan Users] Antw: Problem with two tunnels to the same destinationand dpd

Paul Wouters paul at xelerance.com
Sun Mar 8 19:20:30 EDT 2009


On Thu, 26 Feb 2009, Uwe Knop wrote:

> we have two tunnels configured to the same gateway but different subnets on our 
> side. See: config for the connectios below. Everything seems to work, except 
> for dead peer detection:

> Please note that the line with "latestdpd" occures only on the connection 
> "haitecairit2".

This is because you're sharing phase1 between the two and DPD happens in
phase 1, not phase 2.

> Dos OpenSWAN only check the other gateway one time, even if severeral 
> connections to the same gateway are defined? Is this a bug? Or did I just miss 
> some configurations?

openswan 2.4.x handled this incorrectly. I is fixed in openswan 2.6.x.

Paul


More information about the Users mailing list