bugfix for IKEv2 some problems.
StrongSwan's charon (v4.5.2) has some problems.

1. Collision occurs at rekey, VPN keep disconnected.

when keylife is short , Collision occurs at rekey.

IKEv2 05[IKE] CHILD_SA rekey collision lost, deleting rekeyed child

I'd backport this issue.

bug report at StrongSwan
source code
bugfix in StrongSwan 5.4.0

2. Collision occurs at rekey, segmentation fault occurs with IPsec VTI

ipsec_starter[17127]: charon has died -- restart scheduled (5sec)

A null pointer is referenced and a segmentation fault occurs.
The above problems can be reproduced by bellow setting.



Test status

working fine at nifcloud VPN Gateway.

Best regards.


VyOS 1.1.8
