• Does pfsense have any kind of dead peer detection built into the VPN system? I've noticed some of my tunnels seem to just die after a while, and I have to hit the save button on the vpn panel to restart.

  • Sounds like lifetime mismatches.

    Either way, check Prefer old IPsec SAs in System -> Advanced