cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
887
Views
0
Helpful
1
Replies
Highlighted

Cannot enable DPD for site2site VPN.

I have ASA 5510 on one side & 5505 on the other. Both have 8.4.3 ASA & 6.4.7 ASDM image.

When internet channel on the side of 5510 or 5505 goes down ASDM still shows that vpn is ok, but in fact it's not

After I manually right click on channel & logout it reconnects immediately & VPN reestablishes immediately too.

In ASDM in IPsec site2site connection profile ->tunnel group->monitor keepalives

Confidence interval: 10

Retry interval: 2

This is configured equally on both sides. For some reason it doen't work

When I try to configure it through telnet like this:

conf t

tunnel-group 222.222.222.221 ipsec-attributes

isakmp keepalive threshold 10 retry 2

write memory

It doesn't show any error, but I can't see this line in config when I show conf

Am I doing smth wrong? Plz correct me

Everyone's tags (5)
1 REPLY 1
Cisco Employee

Cannot enable DPD for site2site VPN.

moving this discssion to Security section for better response.

Regards,

Pulkit