I have some IPsec tunnels that sometimes seems to get stuck in a locked up state where no data is passed through them. I can not see any real reason, they just randomly decide to stop passing data for a period.
I do have DPD configured but it does not seem to trigger on this for some reason.
From what I can see in my monitoring the tunnel went down 16:21 and up again 16:49. The 1 hour lifetime seems to be what makes the tunnel work again, it is always down under an hour.
I do think this is somehow routeros related because I have other strongswan based devices going against the same Cisco ASA with same config in remote end and they do not act like this, only my mikrotiks do. Tried routeros latest 6.44, 6.45 and now on 6.46.1 with same problem so it does not seem to be a recent issue.
Nothing special in the log: