Citrix SD-WAN

Eligibility for ipsec non-virtual path routes

In previous releases, ipsec tunnel routes would remain in the route table, even if the tunnel became unavailable.

localized image

Using the Keepalive option under Connections > [Site Name] > IPsec Tunnels enhances this behavior so that the IPsec non-virtual path routes are now considered ineligible when the IPsec tunnel is no longer available. When the keepalive option is enabled, the SAs get created automatically without any traffic being sent through the tunnel.

localized image

Eligibility for ipsec non-virtual path routes