cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1789
Views
0
Helpful
1
Replies

How to configure remote access VPN user idle timeouts

ashley_dew
Level 1
Level 1

Hi,

I have configured a Cisco Router as a VPN RA server. Users can connect normally but the users are been disconnected after 10-15 minutes of inactivity.

To resolve this issue, I have increasing IPSEC SA idle time and ISAKMP keepalive, however there is no major improvement.

crypto dynamic-map         Spidernet-map 20

set security-association idle-time 7200

crypto isakmp         profile vpnclient-declarant-2

keepalive 60 10

Unfortunately, there is no command relative to idle-timeout and session timeout in ASA firewall on Cisco Router.

Is there any means to extend the idle-timeout?

Thanks

Ashley

1 Reply 1

Latchum Naidu
VIP Alumni
VIP Alumni

Hi Ashley,

Choose Configuration > User Management > Groups and choose the appropriate group name to modify the idle timeout setting. Select Modify Group, go to the HW Client tab, and type the desired value in the User Idle Timeout field. Type to disable timeout and allow an unlimited idle period.


Please rate the helpfull posts.
Regards,
Naidu.