DMVPN tunnel goes down and would have to clear isakmp sa for it to come back up.
Hi guys Ive been noticing that my DMVPN setup has been having intermittent issues with sites that are in transport mode.Every now and then I would have a site go down and would have to clear the isakmp sa session for it to come back up again. I have isakmp periodic keepalives configured and when I show my ISAKMP sa it shows multiple duplicate security associations. Can someone help?
My hub router is a ISR 4431 running version Version 15.5(3)S4b.
my spokes are ISR 2921 running version Version 15.5(3)M7
Below is the output of the show crypto isakmp sa with the duplicate sessions:
192.168.100.2 200.32.X.X QM_IDLE 1012 ACTIVE 192.168.100.2 200.32.X.X QM_IDLE 1010 ACTIVE 200.32.X.X 192.168.100.2 QM_IDLE 1013 ACTIVE 200.32.X.X 192.168.100.2 QM_IDLE 1011 ACTIVE
Ive noticed that my sites that are not using port forwarding aren't having this issue.
What is SecureX?
Cisco SecureX is included with all Secure Endpoint (formerly AMP for Endpoints) subscriptions. SecureX is a cloud-native platform that aggregates capabilities across your security environment. It’s designed to simplify your environment, ...
Cisco ISE Secure Wired Access Prescriptive Deployment Guide
Authors: Hariprasad Holla (until June 2018), Mahesh Nagireddy (until Dec 2018)
For an offline or printed copy of this document, simply choose ⋮ Options > Printer ...
Meet the Authors Slides- SecureX and the Evolution of Security Orchestration Automation and Response
(Live event – Wednesday, 20th, 2021 at 10:00 a.m. Pacific / 1:00 p.m. Eastern / 6:00 p.m. Paris)
This event had place on Wednesday 20th, January 202...
The following guide goes over the in and out of the Cisco Endpoints Security Analytics Dashboard as an overview and faq page
For more information on the product offering, licensing, support, and how to solution (TAC) guide links and more please visit the...
Join us live on Tuesday, January 19 at 10:00 am PT (and on demand after) as we discuss the latest version of ATT&CK and the expansion of TTPs in v8.
As a security expert, you are tasked with protecting your environment. You see the value of...