Re: IPSec Keylifetime using ipsecctl and ipsec.conf?

Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]
To: <mailinglists@...>, <misc@...>
Date: Thursday, July 26, 2007 - 1:09 pm

Coincidentally I have exactly same symptoms connecting 4.1-stable (using
isakmpd.conf and AES SHA1) to an unknown remote Firebox VPN gateway running
"firebox software 8.3" (very sketchy information because I had to prie it
out of the IT people at the remote end).

Rekeying occasionaly fails, Phase 2 is down but Phase 1 SA remains active.
The Firebox side does not reply to my Phase 2 proposals until I manually
kill the Phase 1 SA on my end and reestablish everything.

I'm inclined to assume the problem lies at Firebox's end. But I have no
access to Watchguard's support pages to see if it is a known problem.

Mitja

> -----Original Message-----

Previous message: [thread] [date] [author]
Next message: [thread] [date] [author]

Messages in current thread:
Re: IPSec Keylifetime using ipsecctl and ipsec.conf?, Mitja Muženič, (Thu Jul 26, 1:09 pm)
Re: IPSec Keylifetime using ipsecctl and ipsec.conf?, James Lepthien, (Thu Jul 26, 1:35 pm)
Re: IPSec Keylifetime using ipsecctl and ipsec.conf?, Hans-Joerg Hoexer, (Thu Jul 26, 4:24 am)