06-15-2022 05:55 PM
hello.
I have two routers one with static ip address ( Router A ) and one with dynamic ip address.( Router B )
I i setted up a dynamic crypto map on my router A. all is working fine. But when the router B change the ip address after some hours. He can't send traffic when i do sho crypto isakmp sa. I see a tunnel up but no traffic.
I thing a it s ghost tunnel when i clear the vpn session vpn come back again and work fine until the ip change.
Please do you have a solution to this issue ??
Best regards.
Solved! Go to Solution.
06-15-2022 06:17 PM
Config keepalivr in peer with dynamic map,
This will make it detect other peer is gone and peer with new ip can establish new isakmp.
06-15-2022 06:17 PM
Config keepalivr in peer with dynamic map,
This will make it detect other peer is gone and peer with new ip can establish new isakmp.
06-16-2022 08:55 AM
it worked like a charm
Thank you
06-15-2022 06:34 PM
Hi
What you can do is run a EEM script to restart the tunnel time to time. Better if you know the lease time.
You can also use FQDN tunnel but you may need some openDNS to track your IP and monitor de IP changes.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide