Noel,

> upon disconnecting the tunnel (swanctl -t --child tunnel) the content
> of /etc/resolv.conf isn't restored to the content there was before.

With that command, usually only the CHILD_SA gets closed, but not the
IKE_SA. IP address, DNS configuration and other attributes are bound to
the lifetime of the IKE_SA in IKEv2, and not to the CHILD_SA.

Have you tried to terminate the connection with the --ike option?

Regards
Martin

_______________________________________________
Users mailing list
Users@lists.strongswan.org
https://lists.strongswan.org/mailman/listinfo/users

Reply via email to