<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: IPSec SA Congestion in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/ipsec-sa-congestion/m-p/3706451#M12309</link>
    <description>&lt;P&gt;Thanks for your input and suggestions. Yes, we're using ASAs. The command you provided is very helpful.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Much appreciated.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Best, ~zK&lt;/P&gt;</description>
    <pubDate>Thu, 13 Sep 2018 16:35:56 GMT</pubDate>
    <dc:creator>zekebashi</dc:creator>
    <dc:date>2018-09-13T16:35:56Z</dc:date>
    <item>
      <title>IPSec SA Congestion</title>
      <link>https://community.cisco.com/t5/network-security/ipsec-sa-congestion/m-p/3706418#M12306</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;We've been having an issue with one of the IPSec Tunnels where the tunnel would stay up but becomes congested which causes significant traffic delays and latency. The only way to resolve the issue is if we reset the tunnel on one of the ends(i.e. Site A). I've been trying to search for information to explain why the tunnel would become congested, what commands to use to diagnose the congestion issue, and how to resolve such issues.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I appreciate the assistance.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Best, ~sK&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 16:14:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ipsec-sa-congestion/m-p/3706418#M12306</guid>
      <dc:creator>zekebashi</dc:creator>
      <dc:date>2020-02-21T16:14:22Z</dc:date>
    </item>
    <item>
      <title>Re: IPSec SA Congestion</title>
      <link>https://community.cisco.com/t5/network-security/ipsec-sa-congestion/m-p/3706428#M12308</link>
      <description>&lt;P&gt;Hi,&lt;BR /&gt;When you say congested that would imply that a lot of traffic is going over the VPN tunnel, you probably need to increase the bandwidth or use QoS to shape the traffic. You can use netflow in order to identify the top talkers (source/destination) and define QoS policies from there.&lt;BR /&gt;&lt;BR /&gt;Assuming it's you are using an ASA the command "show local-host detail" would give use some information on the hosts and the number of connections, traffic etc.&lt;BR /&gt;&lt;BR /&gt;HTH&lt;/P&gt;</description>
      <pubDate>Thu, 13 Sep 2018 16:09:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ipsec-sa-congestion/m-p/3706428#M12308</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2018-09-13T16:09:21Z</dc:date>
    </item>
    <item>
      <title>Re: IPSec SA Congestion</title>
      <link>https://community.cisco.com/t5/network-security/ipsec-sa-congestion/m-p/3706451#M12309</link>
      <description>&lt;P&gt;Thanks for your input and suggestions. Yes, we're using ASAs. The command you provided is very helpful.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Much appreciated.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Best, ~zK&lt;/P&gt;</description>
      <pubDate>Thu, 13 Sep 2018 16:35:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ipsec-sa-congestion/m-p/3706451#M12309</guid>
      <dc:creator>zekebashi</dc:creator>
      <dc:date>2018-09-13T16:35:56Z</dc:date>
    </item>
  </channel>
</rss>

