09-01-2011 11:23 AM
I have replaced our PIX with a new asa 5505 firewall. I use this firewall as easyvpn client to connect to head-office PIX unit.VPN tunnel establishes without problems but after 1 to 3 minutes the tunnel drops. When replacing the asa with the old pix, all is well. Is the ASA not able to connect to the pix or is my config wrong? output from show config attached.
Thomas
Solved! Go to Solution.
09-11-2011 09:31 AM
use :
debug crypto conditio peer [ip address of the vpn peer]
debug cry isa 127
debug crypto ipsec 127
attach the outputs at the time of the issue !
cheers .
09-06-2011 01:15 AM
Hi Thomas,
When does the connection drops, when the tunnel is idea or during traffic flow?
If it drops when no traffic is passing then try adding command "crypto isakmp keepalive 20"
Try this first and let us know how it goes.
Hope this helps,
Sian
09-11-2011 09:23 AM
Hi Sian,
The connection drops even when in use. We use the connection for remote desktops, and the connection allways drops after 2 to 3 minutes, even when working on remote desktop.
I tried your suggestion "crypto isakmp keepalive 20" all the same, however this didn't help.
Do you have any other suggestions?
Thomas
09-11-2011 09:31 AM
use :
debug crypto conditio peer [ip address of the vpn peer]
debug cry isa 127
debug crypto ipsec 127
attach the outputs at the time of the issue !
cheers .
09-11-2011 11:00 PM
09-21-2011 11:34 PM
Hi Mohammad,
Have you had the time to check my above file? I still have not resolved the issue, despite I by accident pressed the 'Correct answer' link.
Regards,
Thomas
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide