> There is an issue bugs me for a long time: the
> ipsecinit.conf conruptted occutionally during Solaris
> reboot, then the maunal IPsec SAs are no longer
> validated,
> can anybody have ideas on how it happened?
I'm not sure how ipsecinit.conf can be corrupted short of honest-to-goodness filesystem corruption. Same with /etc/inet/secret/ipseckeys (where manual IPsec SAs live). Can you provide more detail? (And sorry for the delay in replying.)
Dan - Solaris IPsec developer