cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
635
Views
0
Helpful
1
Replies

PIX 515 Management

us10610
Level 4
Level 4

I have recently installed a PIX515E which is used for both a firewall and VPN head end. I have several remote IPSEC users and 2 site-to-site connections. I have had issues with a user who is constantly disconnecting to get to the internet (split tunnelling is not enabled) and has had issues reconnecting, almost as if IDS is preventing him from connecting.

If I reload the firewall and clear all connections everything works again but this will not be acceptable when we go into production.

Is there a way to disconnect a single IPSEC remote VPN user? What is the command to disconnect all VPN users without doing a reload?

Thanks!!

1 Reply 1

gfullage
Cisco Employee
Cisco Employee

http://www.cisco.com/univercd/cc/td/doc/product/iaabu/pix/pix_sw/v_63/cmdref/c.htm#wp1026972

"clear crypto ipsec sa" will clear all tunnels.

"clear crypto ipsec sa peer x.x.x.x" will clear the tunnel associated with that peer address only.

Review Cisco Networking for a $25 gift card