IPsec not coming back after link failure

Hi,

I have a rb1200 router it is laid out like so:

dsl modem — eth9 — pppoeclient

This provides internet. I have an ip tunnel to another site and ipsec encapsulation running over that.

If the pppoe client drops, the tunnel drops however it doesn’t come back up. If i flush the SA’s it still does not come back. If i clear the ipencap connection in /ip firewall connection list then the ipsec re establishes and resumes operation.

My question, is there any reason this connection would be sticky. is it because the ipip tunnel stays active ?

Cheers

Try to set peer parameters ‘DPD Interval = 60s’ and ‘DPD Maximum Failures = 1’.

HTH,