Hi Uwe,
> All my initiators are behind NAT without a Port forwarding, so this
> would make sense.
No port forwarding is required if the client originally initiated the
connection. The NAT mapping should still be alive during the short time
the client will not send NAT keep-alives during a reauth
Hello everyone.
I've set up StrongSwan and want to use it for site-to-site VPN and for Road
Warriors.
Almost everything works really great, but I'm always running into the issue
that my VPN initiators lose connection when reauthentication happens.
My VPN gateway then tells me that it has sent