[Swan] Trying to get dependably clean restarts with Cisco ASAs on other ends

Whit Blauvelt whit at transpect.com
Wed Oct 10 15:08:44 UTC 2018


On Wed, Oct 10, 2018 at 03:58:19PM +0100, Nick Howitt wrote:
> Rather than restart ipsec which restarts all conns, can you do it on a per-conn
> basis using the "ipsec auto delete/replace/add/start" commands?

Hi Nick,

Thanks for the suggestion. Do you happen to know the best use of those
options here? Considering the apparent need for a pause, should it be with
"--down" then after a wait "--up"?

Best,
Whit


More information about the Swan mailing list