Patrick McHardy <[EMAIL PROTECTED]> wrote: > > Linux does use the new SA when looking it up again, but it caches the > resolved bundles until an SA expires or is deleted. You could change > racoon to remove the old SA and thus behave similar to Cisco, but this > is wrong for multiple reasons. The other possibility is to flush all > cached bundles and resolve them again, but this is inefficient.
Just delete the old outbound SA and it should make everyone happy. Cheers, -- Visit Openswan at http://www.openswan.org/ Email: Herbert Xu ~{PmV>HI~} <[EMAIL PROTECTED]> Home Page: http://gondor.apana.org.au/~herbert/ PGP Key: http://gondor.apana.org.au/~herbert/pubkey.txt - To unsubscribe from this list: send the line "unsubscribe netdev" in the body of a message to [EMAIL PROTECTED] More majordomo info at http://vger.kernel.org/majordomo-info.html