cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
394
Views
0
Helpful
1
Replies

traffic block on IPSEC tunnal

arvindsa
Level 1
Level 1

I'v allowd one private IP address to sepcific machine on tunnal ACL. My problem is when ever there is no acitivity from client side -- pix will block the traffic.

To enable the traffic I need ping client IP from specefic machine.

Any idea what's wrong

1 Reply 1

cdusio
Level 4
Level 4

Your question is vague. If I understand. the symptom is that if you are not doing anything, when your allowed machine tries to communicate, it cannot at first but if you ping, it will work after...

If that is the case, then you are observing normal behavior in that the tunnel will go down after a period of time. To bring it back up, you simply have to send it interesting traffic..

The ping works but any traffic destined for that remote side (that's allowed of course) should bring it up.

Chris