I manage a bunch of remote mikrotiks that have multiple Ipsec connections.
Having an on-up, on-down, script options in policies would make managing and monitoring these connections so much easier.
As another request (or maybe I'm just doing it wrong)...
Some of these connections must always be up, and thus have backup Ipsec connections. As far as I know, mikrotik won't let you have two identical policies up (to different peers). It would be nice if it was handled like a firewall policy where all policies would connect but only the top active Ipsec connection would work, without a need to reset policies.