[ previous ] [ next ] [ threads ]
 From:  =?iso-8859-1?Q?Ren=E9_Moser?= <mail at renemoser dot net>
 To:  m0n0wall at lists dot m0n0 dot ch
 Subject:  IPsec Tunnel DPD does not work
 Date:  Tue, 22 Feb 2011 14:38:15 +0100 (CET)

I am using 2 m0n0walls behind 2 dyn IPs (WAN). I am using DynDNS on both
systems. Both systems receiving a new IP every ~24h. (DynDNS default TTL
of CNAME is 60s)

I configured an IPsec tunnel on both systems, running fine. But after IP
change, the tunnel is dead. My IPsec config has a DPD of 60s (default).

When I restart racoon (disable/enable IPSec), the tunnel is up again

I am expecting m0n0wall should detect the dead pear and restart the tunnel.
Am I wrong? Or what does DPD (Dead Peer Detection) stand for?

René Moser