Hi Tobias, thanks for taking the time.

I do see the relevant log messages in the case of switching interfaces, and
when there's another path for the tunnel to take, everything works
including MOBIKE.

But when there's no immediate path, e.g. if the only network adapter has a
cable unplugged or if switching WiFi networks takes too long, the route is
deleted and when an interface comes back up, it isn't re-added.

I've just come home from work so I'll have to wait until tomorrow to post
the logs.

Cheers,
Alex

On Mon., 31 Oct. 2016 at 5:24 pm, Tobias Brunner <tob...@strongswan.org>
wrote:

Hi Alex,

> All is working. I then unplug my network cable, wait a few seconds, and
> plug it back in. Now table 220 is empty. The tunnel still says it's
> connected, and I suppose it is - but because the route isn't there any
> more, I get no traffic over the VPN.

You should check the log with the log level for the knl subsystem
increased to 2 (see [1]).  The route in table 220 should get readded
automatically if the network connectivity changes (if it's an IKEv2
connection MOBIKE might also be triggered).

Regards,
Tobias

[1] https://wiki.strongswan.org/projects/strongswan/wiki/LoggerConfiguration
_______________________________________________
Users mailing list
Users@lists.strongswan.org
https://lists.strongswan.org/mailman/listinfo/users

Reply via email to