On Mon, 9 Jul 2007, Millan, Raul wrote:

It seems that at some point the Huawei firewall renegotiates the phase 2 SAs 
way before it even expires (default 3600 seconds); this only happens on 
outbound traffic (my side), the inbound SA (again my side) is correct and I can 
receive echo request packets from the LAN behind the Huawei firewall.

I would guess one side also renegotiates based on traffic. But the other side is not following.

You need to check your logs to see what happens exactly.

Hugo.

--
        [EMAIL PROTECTED]       http://hugo.vanderkooij.org/
            This message is using 100% recycled electrons.

        Some men see computers as they are and say "Windows"
        I use computers with Linux and say "Why Windows?"
                (Thanks JFK, for the insight.)

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to