Open ryanakca opened 2 years ago
Hey! Would it be possible to get a dump of the kernel SAs and policies with setkey -P
and setkey -PD
before and after suspend? I suspect that the bug might be related to SAs not getting updated or deleted properly, the iked log looks fine as far as i can tell.
OpenIKED does not recover gracefully from a system suspend on macos. I find myself having to stop and restart the service to get the connection back in a working state.
After suspending from some time and resuming, I see the following output:
However, I cannot ping anything on 10.0.1.0/24 or 10.0.3.0/24 until I restart iked. Here is my iked.conf:
I am running MacOS 12.2.1 (21D62) Darwin Kernel Version 21.3.0: Wed Jan 5 21:37:58 PST 2022; root:xnu-8019.80.24~20/RELEASE_X86_64 x86_64