Symptom
cEdge: 'security ipsec replay-window' does not reflect configured value.
Conditions
Configure new value of ipsec replay-window and it does not reflect in crypto ipsec sa peer
testing(config)# security
testing(config-security)# ipsec
testing(config-ipsec)# rekey 86400
testing(config-ipsec)# replay-window
() (8192): 4096
testing(config-ipsec)# commit
Commit complete.
testing(config-ipsec)# end
testing#show crypto ipsec sa peer 10.106.37.224 platform | i replay
replay detection support: Y replay window size: 1024
replay detection support: Y replay window size: 1024
replay detection support: Y replay window size: 1024
Workaround
clear sdwan control connections
Further Problem Description