We have a site-to-site VPN link from an Untangle IPSec to a Fortigate. We're able to bring the link up just fine. However, after exactly an hour it will stop passing data. We tried an on-demand and always-on connection but it didn't make any difference. There is a message showing up in the IPSec log about every 40 seconds that we can't figure out.
Mar 30 08:51:11 hostname pluto[31855]: "UT0_Chevrolet" #284: ignoring Delete SA payload: ISAKMP SA not found (maybe expired)
Mar 30 08:51:11 hostname pluto[31855]: "UT0_Chevrolet" #284: received and ignored informational message
That starts from the moment the connection is established and continues even after the link no longer passes data. But it works fine for exactly an hour every time. I could not find any configuration information for the Fortigate router to connect to Untangle but looking over the configs for other routers, pfSense appeared to be the closest. So we matched all the settings on the Fortigate with what showed for the pfSense settings.
Does anyone know what would be causing this?