cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
222
Views
1
Helpful
2
Replies

Cisco ASA ASA5545 Site2site IPSEC Lifetime Phase 1 and Phase 2

chris-doro
Level 1
Level 1

I've setup a VPN site2site-tunnel with the ASDM wizard.
But I'm still not sure aboute some parameters.
In almost every Site2site tunnel I've configured I had the option for 2 timers: Phase 1 (which is usually the longer) and Phase2.
But on the ASA there is only one parameter.
I need phase 1 28800 seconds and phase 2 3600 seconds.
But which one is now the set security-association lifetime seconds 28800?
And where is the other?
I do not see it in GUI nor in CLI.
Any suggestions?
Thanks.

1 Accepted Solution

Accepted Solutions

Set security-association lifetime seconds 28800 <- this for phaseII

Under crypto ike1 policy 

Add lifetime <- this for phaseI

MHM

View solution in original post

2 Replies 2

Set security-association lifetime seconds 28800 <- this for phaseII

Under crypto ike1 policy 

Add lifetime <- this for phaseI

MHM

how you can config the lifetime and how you can check it 

Screenshot (488).pngScreenshot (489).pngScreenshot (490).png