

This might be related to these rekeying problems.

However, there is also a thread with 'rekeying' issues on the apple site. A few minutes later the client initiates a new connection and strongSwan (re)leases the IP to the new connection (after destroying the previous one). It looks like the client is trying to do a rekey after ~45 mins, which somehow fails.
#Mac ipsecuritas cisco asa no xauth Offline
strongSwan 5.2.1 (strongSwan package from wheezy-backports)Īfter approximately ~45 minutes, the connection seems to be destroyed:įeb 10 22:54:51 test charon: 09 IKE_SA CiscoIPsec state change: ESTABLISHED => DELETINGįeb 10 22:54:51 test charon: 09 IKE_SA CiscoIPsec state change: DELETING => DESTROYINGįeb 10 22:54:51 test charon: 09 lease 10.10.0.10 by 'username' went offline.I also use strongSwan for Apple/Mac clients, using the built-in Cisco IPsec client.
