Comment 4 for bug 479632

Revision history for this message
Arjan (iafilius) wrote : Re: VPN connection fails after one hour

A me too message.
after playing with the sa lifetime on the vpn server, vpnc or hangs, or just doesn't work anymore (blackhole) after the expire of the SA lifetime(er).

This is with ubuntu 9.10 (32 bits) and and new ubuntu 10.04 alpha both runs 0.5.3 vpnc.

quite annoying, and ran many times into it, but wasn't able to pinpoint, but with a SA liftime of 120 seconds (minimum in cisco ios) i can confirm it's a rekey issue.
the first message in cisco ios (15.x) is :

%CRYPTO-4-RECVD_PKT_MAC_ERR: decrypt: mac verify failed for connection id=17 local=<snip> remote=<snip> spi=<snip> seqno=00000001

hope this will help to pinpoint a solution.

Regards,

Arjan Filius