[ previous ] [ next ] [ threads ]
 
 From:  Jukka Salmi <j+m0n0wall at 2004 dot salmi dot ch>
 To:  m0n0wall at lists dot m0n0 dot ch
 Subject:  Re: [m0n0wall] IPSec VPN Problem on Monowall 1.0
 Date:  Tue, 10 Aug 2004 16:21:37 +0200
Dinesh Nair --> m0n0wall (2004-08-03 18:24:16 +0800):
> generally, phase I lifetimes should be one of the following: 21600 (6
> hours), 43200 (12 hours) or 86400 (24 hours). phase II lifetimes can be
> 1800 (30 mins), 3600 (60 mins) or 7200 (2 hours).

RFC 2407 defines the default value (which should be assumed if no value is
specified) as 28800 seconds (8 hours). So that value should probably be in
your list ;-)


Regards, Jukka

-- 
bashian roulette:
$ ((RANDOM%6)) || rm -rf ~