On 27.10.2006 16:04 Robert Rich wrote:
> These are mobile client tunnels (home systems are on DHCP). Phase 2
> lifetime is configured to be extremely high (1 year) to avoid
> renegotiation too frequently..could that be the cause?
> Any ideas?
What is the phase 1 lifetime set to? I think it Phase 2 lifetime must be
smaller than Phase 1 lifetime.
I have made good experiences with the following settings:
Phase 1: 86400s
Phase 2: 3600s