cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1312
Views
5
Helpful
1
Replies

Cisco ASA ikev2 VPN connection problem with Microsoft Azure platform

Thom-7
Level 1
Level 1

Hi All,

 

I'm having a bit of a problem with an ikev2 vpn between a cisco ASA (9.5(1)) and the Microsoft Azure platform.

 

I've managed to get the VPN to establish and pass traffic.

 

The problem is that intermittently the ASA appears to stop passing traffic  (No TX when looking at the Tunnel session details) although the RX seems to increment fine.

 

If I reboot the ASA it fixes the problem, until the next time which was circa 1 week under little traffic but now a lot more traffic is being copied across the VPN it seems to last a matter of hours.

 

The SA lifetime is set at 8 hours, with unlimited traffic volume set in the crypto map..

 

I have a feeling it's something to do with stale SPI's (although not certain).

 

I would appreciate any help with this, in terms of being certain of what the issue is, or if it's a known issue.

 

Thanks in advance!

1 Reply 1

David Anstee
Level 4
Level 4

I also have the same challenge, sometimes I just change the pre-shared key and it works again for a while, but I dont kno why it keeps dropping

 

ASA version 9.5