cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
813
Views
0
Helpful
1
Replies

uauth timeout values for absolute and inactivity

cketan
Level 1
Level 1

Hello,

Having remote access vpn using vpn client 3.0 to pix 515 vpn in wild card and mode-config and a site to site vpn between the pix 515 and a branch office firewall.

Now setting up RSA SecurID for two factor authentication.

Current config has

"timeout uauth 0:05:00 absolute"

Can I have a seperate timeout values for the site to site vpn and the remote access vpn connections?

What would be well accepted values for the absolute and inactivity timings if users have to perform RSA SecurID authentication ?

Regards.....Ketan

1 Reply 1

j-block
Level 4
Level 4

“timeout uauth” is a global configuration command. You cannot selectively apply it. I’ve rarely seen a reason to change this timer.