[Openswan Users] DPD and XAUTH problem

Paul Wouters paul at xelerance.com
Tue Jan 4 21:50:57 EST 2011


On Tue, 4 Jan 2011, Murat Sezgin wrote:

> The client's version is; Openswan U2.6.26/K2.6.35-24-generic (netkey)
> The server's version is: 2.6.24rc4

> Both DPD and XAUTH are enabled. The connection is established
> successfully, but when I unplug the cables between the peers, the client
> does not timeout after the DPD timeout value. I see the below logs in the

Plese upgrade to 2.6.31 or 2.6.32. There were some DPD fixes that were
brought in in those versions.

> My client's ipsec.conf  file is as below:

>         dpddelay=30
>         dpdtimeout=120
>         dpdaction=hold

You probably want dpdaction=restart ?

On the serve ryou want dpdaction=clear

Paul


More information about the Users mailing list