I have couple of issues with my EasyVPN server and Cisco VPN Client on Win7.
1: VPN Client establishes the connection, traffic flow, destination network can be pinged. After a few minutes traffic stops passing the VPN. No ping to IP or DNS names can be made. In order to resole it. Users have to re-establish the VPN again. Occastioanl it stays and continue to work.
2: VPN Clients don't pick the same IP address from local address pool even though I specified "RECYLE" option in the IP local pool command.
I would apprecaite if someone look at my configuration and advise any mis-config or anything that needs to be corrected.
The configuration looks good to me. The 'recycle delay' feature only keep the ip address unallocated for the specified time period, To my knowledge we can not guarantee the assigment of the same IP with this feature.
Regarding the communicaion timeout issue, you can check the following things
1. While the is client connected to VPN, initiate a communincation to your internal network, and see whether you are getting
'decap' counter getting incremented in show 'crypto ipsec sa ' for that specific client IP
If the decap counter getting incremented, that says, the traffic is reaching your router and doing IP sec decryption but not properly processing after that due to some reason.
If the decap counter not increasing, you can do a reverse ping from the router to the client IP with source address of your LAN interface, then can notice 'encap' counter incresing but no decapsulations..
In that scenario, I would say the issue is local to the client and you may need to change the VPN client version and see