12-03-2008
09:57 AM
- last edited on
02-21-2020
11:19 PM
by
cc_security_adm
We had trouble after a brief ISP outage with one of our VPN tunnels not coming back up. All other tunnels came up and configuration was not changed on either end. We spent several hours last night troubleshooting with the connecting company and with TAC. We got to a point where we needed resources from the other company to continue troubleshooting and so decided to work on it in the morning.
This morning the VPN tunnel came up with the first attempts to connect hosts at the other end of the crypto tunnel from end users this morning. Both the remote side and our side remain unchanged. What could cause difficulty with the tunnel coming up but then go away? We have had this problem with other VPN tunnels in the past where it seemed to only work after the tunnel configuration was removed and readded on the remote end. We've also had difficulty setting up new VPN connections with virtually the same messages in the log.
12-03-2008 09:59 AM
12-03-2008 10:10 AM
12-03-2008 10:11 AM
We just experienced a brief outage again and are again having the same trouble connecting this tunnel. Any ideas?
12-04-2008 10:30 AM
Jason
I believe that I have seen symptoms similar to this before. It would seem that there might be something out of sync with the working keys. I would suggest that you clear the ISAKMP SAs and the IPSec SAs.
HTH
Rick
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide