Re: iked fails to cleanup its pf state when service stops

2025-01-04 Thread William Rusnack
Still hangs until the timeout even with ikectl decouple. > On Jan 4, 2025, at 12:22 PM, Lucas Gabriel Vuotto wrote: > > On Fri, Jan 03, 2025 at 07:13:37AM -0500, William Rusnack wrote: >> Specifically with iked, it makes debugging configurations remotely very >> tedious and time consuming since

Re: iked fails to cleanup its pf state when service stops

2025-01-04 Thread Lucas Gabriel Vuotto
On Fri, Jan 03, 2025 at 07:13:37AM -0500, William Rusnack wrote: > Specifically with iked, it makes debugging configurations remotely very > tedious and time consuming since after stopping iked you have to wait a > minute to ssh the server every time. ikectl decouple; rcctl stop iked

Re: iked fails to cleanup its pf state when service stops

2025-01-03 Thread William Rusnack
Specifically with iked, it makes debugging configurations remotely very tedious and time consuming since after stopping iked you have to wait a minute to ssh the server every time. > On Dec 26, 2024, at 11:19 AM, Stuart Henderson wrote: > > On 2024/12/26 10:15, William Rusnack wrote: >>> Synop

Re: iked fails to cleanup its pf state when service stops

2024-12-26 Thread Stuart Henderson
On 2024/12/26 10:15, William Rusnack wrote: > > Synopsis: iked leaves behind pf state entries for NAT-T (UDP 4500) upon > > stopping > > Category: bin > > Description: > When stopping iked with `rcctl stop iked`, the service leaves behind pf state > entries for NAT-T (UDP 4500) that prevent n