HI
I have 5 tunnels , regarding installed-sa all tunnels is up.
But
ip ipsec remote-peers print
Show only one tunnel. Why?
What does the next info mean ???
14:02:20 ipsec,ike failed to recv from pfkey (Resource temporarily unavailable)
Sometimes some SA expared but not estableshed
14:13:17 ipsec,ike IPsec-SA expired: ESP/Tunnel x.x.x.x[0]->y.y.y.y[0] spi=174831349(0xa6bb6f5)
14:13:17 ipsec,ike IPsec-SA expired: ESP/Tunnel y.y.y.y[0]->x.x.x.x[0] spi=158439376(0x97197d0)
and nothing alse … nothing about IPsec-SA established (in the same time tunnel is UP???)
Even IF log shows (tunnel goes down or oposite site terminate it manually)
14:13:17 ipsec,ike IPsec-SA expired: ESP/Tunnel x.x.x.x[0]->y.y.y.y[0] spi=174831349(0xa6bb6f5)
14:13:17 ipsec,ike IPsec-SA expired: ESP/Tunnel y.y.y.y[0]->x.x.x.x[0] spi=158439376(0x97197d0)
I can see those SAs in /ip ipsec instaled-sa ![]()
And amount of memory always degree …
Need to reboot router to fix that once per 2-3 days.
ROS - 3.7 - 3.9