Herbert Xu wrote: > Kristian Slavov <[EMAIL PROTECTED]> wrote: > >>I noticed that the SA's curlft->usetime is only updated once (time of the >>first packet). Is this the intended behaviour, or should it be the time >>the SA was last used? SPs, on the other hand, are constantly updated as >>packets flow. > > > Yes this is intentional. We want to have the SAs expire after a set period > of time after their first use as opposed to the last. Usually you should > be to use the time on the SP instead.
The idle time expiration of policies is used for DPD, right? I wonder why the SAs aren't used for this (also with idle time expiration), unlike the policy they are directly related to a peer. - To unsubscribe from this list: send the line "unsubscribe netdev" in the body of a message to [EMAIL PROTECTED] More majordomo info at http://vger.kernel.org/majordomo-info.html