Windows Server and Cisco ASA work this way, when you try to access the remote site, the tunnel will establish and be brought up for a length of time. And then it will close after a period. Is there functionality like this with openswan at all? Or is just using ipsec auto --up/down the only way? Thanks, Ryan