[Openswan Users] Mac OS X Roadwarrior IPSEC/L2TP fails second connection

Anthony Lester alester at free.fr
Wed Jun 9 11:03:38 EDT 2010


Just for information, this exact problem is mentioned in Jacco's FAQ at
http://www.jacco2.dds.nl/networking/openswan-macosx.html in
§7.2 about Dead Peer Detection. It seems to have been updated
recently.

It turns out that MacOS X Leopard doesn't send all the close request
so the tunnel is put into hold. The following settings in the  
roadwarrior
config of the ipsec.conf get around this:
     dpddelay=40
     dpdtimeout=130
     dpdaction=clear

So after a disconnect, I can now reconnect after about 2 minutes.

Regards
Anthony



More information about the Users mailing list