Project

General

Profile

Actions

Bug #655

closed

Disabling IPsec does not flush SPDs

Added by Jim Pingle over 14 years ago. Updated over 14 years ago.

Status:
Resolved
Priority:
Normal
Assignee:
-
Category:
IPsec
Target version:
Start date:
06/14/2010
Due date:
% Done:

0%

Estimated time:
Plus Target Version:
Release Notes:
Affected Version:
2.0
Affected Architecture:

Description

When you disable IPsec, all SPDs should be flushed or traffic that would have been going across the VPN will still be grabbed even though IPsec is off.

Same goes for disabling an individual tunnel, its SPD entries should be flushed when a single tunnel is disabled/removed.

Actions #1

Updated by Chris Buechler over 14 years ago

This used to work in 2.0 even, for both of the mentioned scenarios. Neither do now.

Actions #2

Updated by Ermal Luçi over 14 years ago

  • Status changed from New to Feedback
Actions #3

Updated by Chris Buechler over 14 years ago

  • Status changed from Feedback to New

no change

Actions #4

Updated by Jim Pingle over 14 years ago

  • Status changed from New to Feedback

Should be fixed by:

https://rcs.pfsense.org/projects/pfsense/repos/mainline/commits/9fad9848c9353b9a21402634a537ae74bd976354

Unless someone has a better suggestion. Without that change, the underlying function doesn't pick up on the config update for some reason.

Actions #5

Updated by Chris Buechler over 14 years ago

  • Status changed from Feedback to Resolved

fixed

Actions

Also available in: Atom PDF