[Openswan Users] Clarification on dpdaction=clear

Leto letoams at gmail.com
Wed Sep 11 13:29:01 UTC 2013


clear means go back to auto=add, loaded but not started. cleartext packets flow. hold means block packet flow until tunnel is back

sent from a tiny device 

On 2013-09-11, at 6:17, divya mohan <m.divya.mohan at zoho.com> wrote:

> There is an IPSec connection like : Host A [initiator]--- Host B [responder].
> 
> dpdaction=clear is configured on Host A.
> 
> The connection between two hosts got broken (assume Host B was shutdown).
> 
> Does the 'clear' means clearing IPSec security association, so that
> later if Host B comes up, IPSec tunnel will be re-established?
> Or does 'clear' means that the security policies will be cleared, so
> that later of Host B comes up, plain (un-encrypted) traffic will be
> sent?
> _______________________________________________
> Users at lists.openswan.org
> https://lists.openswan.org/mailman/listinfo/users
> Micropayments: https://flattr.com/thing/38387/IPsec-for-Linux-made-easy
> Building and Integrating Virtual Private Networks with Openswan:
> http://www.amazon.com/gp/product/1904811256/104-3099591-2946327?n=283155


More information about the Users mailing list