IPsec phase 1 interface type cannot be changed after it is configured
The IPsec phase 1 interface type cannot be changed after it is configured. This is due to the tunnel ID parameter (tun_id
), which is used to match routes to IPsec tunnels to forward traffic. If the IPsec phase 1 interface type needs to be changed, a new interface must be configured.