cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
647
Views
0
Helpful
1
Replies

Router-to-PIX VPN Tunnels fade in and out

depadua_chris
Level 1
Level 1

Does anyone know of any problems with Router-to-PIX vpn tunnels? For a number of months we've had about 35 831Routers vpn'd into our PIX515 and the tunnel has been stable. Recently, however, the tunnel has been dropping out at a number of sites.

When the tunnel goes down the users still have access to their local internet but obviously not to the shared network resources of the vpn tunnel. In most cases the tunnel can be re-established at each location simply by rebooting the router. Only problem with that is that some of the locations are having to reboot their 831Router more than two or three times a day.

I've added keepalive statements into theconfig of the routers and the PIX. Specifically I've added these two lines to the routers:

Crypto isakmp keepalive 10 5

crypto ipsec secutity-association lifetime seconds 28800

I added a similar isakmp keepalive to the PIX. Any suggestions would be appreciated as some of my users are getting frustrated.

Thank you,

Chris

1 Reply 1

k.poplitz
Level 3
Level 3

Try using the debug commands and see if you are getting any error messages that might give us some idea.

Review Cisco Networking for a $25 gift card