Dead Peer Dectection
Does pfsense have any kind of dead peer detection built into the VPN system? I've noticed some of my tunnels seem to just die after a while, and I have to hit the save button on the vpn panel to restart.
Sounds like lifetime mismatches.
Either way, check Prefer old IPsec SAs in System -> Advanced