[Swan] establishing multiple VPN tunnels - drains resources

Paul Wouters paul at nohats.ca
Thu Oct 5 21:35:21 EEST 2023


On Wed, 4 Oct 2023, Pavol Hustý wrote:

> We found the following state in the existing connection.
> 
> After the connection is established. IPsec establishing multiple VPN tunnels. Some of them are not used to send data and are just in dormant state.
> Suspicion, rekey times are different, this leads to unused tunnels being left hanging which drains resources.
> 
> Is it a known bug or is it a misconfiguration? There is a solution? 

Seems the remote is rekeying to you a LOT? Ask them why they are doing that.

Paul


More information about the Swan mailing list