<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: VPN tunnel tears down after 24 hrs between ASA and Checkpoin in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/vpn-tunnel-tears-down-after-24-hrs-between-asa-and-checkpoint/m-p/932109#M937844</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for responding. Since checkpoint is on the customer end, there is some delay in getting the information from the Checkpoint end.&lt;/P&gt;&lt;P&gt;Please could you let me know what is simplified and traditional mode of VPNs and which one is used frequently.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Deepali&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 13 May 2008 11:59:16 GMT</pubDate>
    <dc:creator>deepali.shinde</dc:creator>
    <dc:date>2008-05-13T11:59:16Z</dc:date>
    <item>
      <title>VPN tunnel tears down after 24 hrs between ASA and Checkpoint</title>
      <link>https://community.cisco.com/t5/network-security/vpn-tunnel-tears-down-after-24-hrs-between-asa-and-checkpoint/m-p/932107#M937842</link>
      <description>&lt;P&gt;Hi Experts,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We have IPSec configured between Cisco ASA and Checkpoint NGX , the tunnel comes down once in a day and re-establishes after 2 hrs, we are facing this issue on a daily basis.&lt;/P&gt;&lt;P&gt;The SAs for phase1 and phase2 for ASA are 86400 secs and 3600 secs respectively .&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any suggestions would be of great help.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 12:43:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/vpn-tunnel-tears-down-after-24-hrs-between-asa-and-checkpoint/m-p/932107#M937842</guid>
      <dc:creator>deepali.shinde</dc:creator>
      <dc:date>2019-03-11T12:43:58Z</dc:date>
    </item>
    <item>
      <title>Re: VPN tunnel tears down after 24 hrs between ASA and Checkpoin</title>
      <link>https://community.cisco.com/t5/network-security/vpn-tunnel-tears-down-after-24-hrs-between-asa-and-checkpoint/m-p/932108#M937843</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;1- what version on the ASA?  7.x or 8.x?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2- what version of Checkpoint NGx?  R60, R60A, R61, R62, R63 or R65?  &lt;/P&gt;&lt;P&gt;Do you have any HFAs install?  &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;3- Are you using traditional or simplified mode VPN?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;4- Do you have PFS enable on the ASA not Checkpoint or vice versa?  &lt;/P&gt;&lt;P&gt;Please check this.  &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;5- What is the encrytion domain on the Checkpoint side?  I need to know&lt;/P&gt;&lt;P&gt;ALL the network included behind the Checkpoint firewall&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;6- what is the interesting traffics behind the ASA?  Need to know that&lt;/P&gt;&lt;P&gt;too&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;7- did you run "vpn debug trunc" to capture the $FWDIR/log/ike.elg file&lt;/P&gt;&lt;P&gt;and view it with IKEView.exe program.  It will tell you exactly what&lt;/P&gt;&lt;P&gt;went wrong&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;8- if using simplified mode, did you use "permanent tunnel"?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;9- did you tell checkpoint NOT to supernet everything in it encryption&lt;/P&gt;&lt;P&gt;domain&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please provide these information.  It is hard to help you troubleshoot&lt;/P&gt;&lt;P&gt;a problem with so little information to go on.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;CCIE Security&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 13 May 2008 11:02:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/vpn-tunnel-tears-down-after-24-hrs-between-asa-and-checkpoint/m-p/932108#M937843</guid>
      <dc:creator>cisco24x7</dc:creator>
      <dc:date>2008-05-13T11:02:25Z</dc:date>
    </item>
    <item>
      <title>Re: VPN tunnel tears down after 24 hrs between ASA and Checkpoin</title>
      <link>https://community.cisco.com/t5/network-security/vpn-tunnel-tears-down-after-24-hrs-between-asa-and-checkpoint/m-p/932109#M937844</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for responding. Since checkpoint is on the customer end, there is some delay in getting the information from the Checkpoint end.&lt;/P&gt;&lt;P&gt;Please could you let me know what is simplified and traditional mode of VPNs and which one is used frequently.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Deepali&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 13 May 2008 11:59:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/vpn-tunnel-tears-down-after-24-hrs-between-asa-and-checkpoint/m-p/932109#M937844</guid>
      <dc:creator>deepali.shinde</dc:creator>
      <dc:date>2008-05-13T11:59:16Z</dc:date>
    </item>
    <item>
      <title>Re: VPN tunnel tears down after 24 hrs between ASA and Checkpoin</title>
      <link>https://community.cisco.com/t5/network-security/vpn-tunnel-tears-down-after-24-hrs-between-asa-and-checkpoint/m-p/932110#M937846</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Most of VPN is setup using Simplified mode.&lt;/P&gt;&lt;P&gt;Traditional mode is the legacy back to the &lt;/P&gt;&lt;P&gt;Checkpoint version 4.1.  About 33% of VPN on&lt;/P&gt;&lt;P&gt;checkpoint is setup this way.  However,&lt;/P&gt;&lt;P&gt;with NG and higher, Simplified mode is the&lt;/P&gt;&lt;P&gt;default.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 13 May 2008 14:38:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/vpn-tunnel-tears-down-after-24-hrs-between-asa-and-checkpoint/m-p/932110#M937846</guid>
      <dc:creator>cisco24x7</dc:creator>
      <dc:date>2008-05-13T14:38:02Z</dc:date>
    </item>
    <item>
      <title>Re: VPN tunnel tears down after 24 hrs between ASA and Checkpoin</title>
      <link>https://community.cisco.com/t5/network-security/vpn-tunnel-tears-down-after-24-hrs-between-asa-and-checkpoint/m-p/932111#M937848</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please see the answers inline.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1- what version on the ASA? 7.x or 8.x? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ASA version 7.2&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2- what version of Checkpoint NGx? R60, R60A, R61, R62, R63 or R65? &lt;/P&gt;&lt;P&gt;Do you have any HFAs install? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Checkpoint R61&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;3- Are you using traditional or simplified mode VPN? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;simplified mode&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;4- Do you have PFS enable on the ASA not Checkpoint or vice versa? &lt;/P&gt;&lt;P&gt;Please check this. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PFS has not been enabled both on checkpoint and ASA&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;5- What is the encrytion domain on the Checkpoint side? I need to know &lt;/P&gt;&lt;P&gt;ALL the network included behind the Checkpoint firewall &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;6- what is the interesting traffics behind the ASA? Need to know that too &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;7- did you run "vpn debug trunc" to capture the $FWDIR/log/ike.elg file &lt;/P&gt;&lt;P&gt;and view it with IKEView.exe program. It will tell you exactly what went wrong &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We have collected logs by enabling debug crypto engine and debug crypto isakmp when the tunnel goes down, please find the logs attached.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;8- if using simplified mode, did you use "permanent tunnel"? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;9- did you tell checkpoint NOT to supernet everything in it encryption domain &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;No domains are supernetted.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please let me know if you need anymore info from our end.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Deepali&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 15 May 2008 05:05:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/vpn-tunnel-tears-down-after-24-hrs-between-asa-and-checkpoint/m-p/932111#M937848</guid>
      <dc:creator>deepali.shinde</dc:creator>
      <dc:date>2008-05-15T05:05:04Z</dc:date>
    </item>
    <item>
      <title>Re: VPN tunnel tears down after 24 hrs between ASA and Checkpoin</title>
      <link>https://community.cisco.com/t5/network-security/vpn-tunnel-tears-down-after-24-hrs-between-asa-and-checkpoint/m-p/932112#M937849</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We are observing that the tunnel fails more often now , 3-4 times a day and the tunnel comes up fine only after 5-6 hours sometime.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Deepali&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 15 May 2008 06:36:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/vpn-tunnel-tears-down-after-24-hrs-between-asa-and-checkpoint/m-p/932112#M937849</guid>
      <dc:creator>deepali.shinde</dc:creator>
      <dc:date>2008-05-15T06:36:38Z</dc:date>
    </item>
    <item>
      <title>Re: VPN tunnel tears down after 24 hrs between ASA and Checkpoin</title>
      <link>https://community.cisco.com/t5/network-security/vpn-tunnel-tears-down-after-24-hrs-between-asa-and-checkpoint/m-p/932113#M937851</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Please post the ike.elg file.  I won't be to &lt;/P&gt;&lt;P&gt;offer much help without that file.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1- Pix 7.2 is buggy.  Why don't you use version&lt;/P&gt;&lt;P&gt;7.0.7 instead?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2- why don't they upgrade the HFA on R61?  It&lt;/P&gt;&lt;P&gt;should be at HFA_03.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;3- when you say "No domains are supernetted."&lt;/P&gt;&lt;P&gt;How do you know?  Without the ike.elg file,&lt;/P&gt;&lt;P&gt;I will know that for sure.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 16 May 2008 01:59:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/vpn-tunnel-tears-down-after-24-hrs-between-asa-and-checkpoint/m-p/932113#M937851</guid>
      <dc:creator>cisco24x7</dc:creator>
      <dc:date>2008-05-16T01:59:28Z</dc:date>
    </item>
    <item>
      <title>Re: VPN tunnel tears down after 24 hrs between ASA and Checkpoin</title>
      <link>https://community.cisco.com/t5/network-security/vpn-tunnel-tears-down-after-24-hrs-between-asa-and-checkpoint/m-p/932114#M937853</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I think I've found the solution for you:&lt;/P&gt;&lt;P&gt;Look at this access-list:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list 114 extended permit ip host 192.168.170.33 host 172.20.14.10 &lt;/P&gt;&lt;P&gt;access-list 114 extended permit ip host 192.168.170.33 host 172.16.2.26 &lt;/P&gt;&lt;P&gt;access-list 114 extended permit ip host 192.168.170.38 host 172.16.2.26 &lt;/P&gt;&lt;P&gt;access-list 114 extended permit ip 192.168.170.0 255.255.255.0 host 91.102.122.11 &lt;/P&gt;&lt;P&gt;access-list 114 extended permit ip 192.168.170.0 255.255.255.0 91.102.122.12 255.255.255.252 &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let say these are the hosts and network behind the checkpoint firewall.&lt;/P&gt;&lt;P&gt;Let assume that the network behind the checkpoint firewall is 172.20.14.0/24 and&lt;/P&gt;&lt;P&gt;172.16.2.0/24.  Let also assume that the checkpoint also has another VPN with&lt;/P&gt;&lt;P&gt;another customer_X and that customer_X needs to access the whole network 172.20.14.0/24&lt;/P&gt;&lt;P&gt;and 172.16.2.0/24.  Therefore, the checkpoint engineer put both network&lt;/P&gt;&lt;P&gt;17.20.14.0/24 and 172.16.2.0/24 into his local encryption domain.  However, you do &lt;/P&gt;&lt;P&gt;not need to access the whole network, just a few hosts so he also put a couple of&lt;/P&gt;&lt;P&gt;hosts that you need into the encryption domain as well.  &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If the cisco side initiate the traffics, it should work because checkpoint&lt;/P&gt;&lt;P&gt;does not care.  However, if checkpoint initiates the traffics, it will send the&lt;/P&gt;&lt;P&gt;whole /24 instead of a single host thus causing phase II quick mode error.&lt;/P&gt;&lt;P&gt;The ike.elg file can definitely confirm this.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;SOLUTION:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;in previous checkpoint version prior to NGx, you have to modify the IKE_largest_possible_network&lt;/P&gt;&lt;P&gt;from "true" to "false" and also the $FWDIR/lib/user.def file.  In NGx, that is NOT &lt;/P&gt;&lt;P&gt;necessary.  In the VPN community of your particular VPN tunnel, under advance mode, just select&lt;/P&gt;&lt;P&gt;"exchange key per host".  That will fix your problem.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Good luck to you&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;CCIE Security&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 16 May 2008 10:48:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/vpn-tunnel-tears-down-after-24-hrs-between-asa-and-checkpoint/m-p/932114#M937853</guid>
      <dc:creator>cisco24x7</dc:creator>
      <dc:date>2008-05-16T10:48:34Z</dc:date>
    </item>
    <item>
      <title>Re: VPN tunnel tears down after 24 hrs between ASA and Checkpoin</title>
      <link>https://community.cisco.com/t5/network-security/vpn-tunnel-tears-down-after-24-hrs-between-asa-and-checkpoint/m-p/932115#M937854</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks ! a ton.&lt;/P&gt;&lt;P&gt;I will try the solution you have suggested and update you soon.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Deepali&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 16 May 2008 17:57:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/vpn-tunnel-tears-down-after-24-hrs-between-asa-and-checkpoint/m-p/932115#M937854</guid>
      <dc:creator>deepali.shinde</dc:creator>
      <dc:date>2008-05-16T17:57:59Z</dc:date>
    </item>
    <item>
      <title>Re: VPN tunnel tears down after 24 hrs between ASA and Checkpoin</title>
      <link>https://community.cisco.com/t5/network-security/vpn-tunnel-tears-down-after-24-hrs-between-asa-and-checkpoint/m-p/932116#M937855</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The customer has made the change you suggested on the firewall, we need to monitor the tunnel.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please could you let me know where I can find the $FWDIR/lib/user.def file on ASA and can this be viewed through CLI .&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Deepali&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 21 May 2008 09:28:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/vpn-tunnel-tears-down-after-24-hrs-between-asa-and-checkpoint/m-p/932116#M937855</guid>
      <dc:creator>deepali.shinde</dc:creator>
      <dc:date>2008-05-21T09:28:58Z</dc:date>
    </item>
    <item>
      <title>Re: VPN tunnel tears down after 24 hrs between ASA and Checkpoin</title>
      <link>https://community.cisco.com/t5/network-security/vpn-tunnel-tears-down-after-24-hrs-between-asa-and-checkpoint/m-p/932117#M937856</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;First of all, I made a mistake.  In NGx R60&lt;/P&gt;&lt;P&gt;and higher, checkpoint has changed the location&lt;/P&gt;&lt;P&gt;of the user.def from $FWDIR/lib to $FWDIR/conf&lt;/P&gt;&lt;P&gt;directory.  The new name of this file is &lt;/P&gt;&lt;P&gt;user.def.NGX_R60.  Go figure.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;These files are on the Checkpoint firewall,&lt;/P&gt;&lt;P&gt;not the ASA.  The file is an ASCII file and&lt;/P&gt;&lt;P&gt;that  you can read it with vi, cat or more.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;CCIE Security&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 21 May 2008 17:12:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/vpn-tunnel-tears-down-after-24-hrs-between-asa-and-checkpoint/m-p/932117#M937856</guid>
      <dc:creator>cisco24x7</dc:creator>
      <dc:date>2008-05-21T17:12:47Z</dc:date>
    </item>
    <item>
      <title>Re: VPN tunnel tears down after 24 hrs between ASA and Checkpoin</title>
      <link>https://community.cisco.com/t5/network-security/vpn-tunnel-tears-down-after-24-hrs-between-asa-and-checkpoint/m-p/932118#M937857</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thank you so much, the problem is fixed and we see that the VPN is not going down any more.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 04 Jun 2008 06:12:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/vpn-tunnel-tears-down-after-24-hrs-between-asa-and-checkpoint/m-p/932118#M937857</guid>
      <dc:creator>deepali.shinde</dc:creator>
      <dc:date>2008-06-04T06:12:51Z</dc:date>
    </item>
    <item>
      <title>Re: VPN tunnel tears down after 24 hrs between ASA and Checkpoin</title>
      <link>https://community.cisco.com/t5/network-security/vpn-tunnel-tears-down-after-24-hrs-between-asa-and-checkpoint/m-p/3928702#M937858</link>
      <description>&lt;P&gt;Hello I have similar problem that but the version of fw´s from CheckPoint is R80.10 and the Cisco ASA, Id like to know if someone can explain me more about how to fix that problem with this version of CheckPoint, thanks in advacne, best regards.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 23 Sep 2019 15:38:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/vpn-tunnel-tears-down-after-24-hrs-between-asa-and-checkpoint/m-p/3928702#M937858</guid>
      <dc:creator>rvargas05</dc:creator>
      <dc:date>2019-09-23T15:38:56Z</dc:date>
    </item>
  </channel>
</rss>

