Duplicate SAD entries lead to ESP tunnel malfunction

Oleg Tarasov subscriber at osk.com.ua
Mon Jan 30 00:28:08 PST 2006


Hello,

Julian Elischer <julian at elischer.org> wrote:

> let us know if that solves your problem..

> remember you don't need to reboot to set it..
> the result should be instantaneous.

net.key.preferred_oldsa=0

really helped in this situation. Both tunnels from now on work
perfectly inspite on connection problems or any other problems.

It is not clear no me why this option should ever be set to 1 as it
will certainly bring to a malfunction if any problem occurs.

I suggest to change the default value of this one to 0 in FreeBSD
distribution.


-- 
Best regards,
 Oleg Tarasov                          mailto:subscriber at osk.com.ua



More information about the freebsd-net mailing list