03-31-2011 01:51 PM
I have an ASA5505 behind an ASA5505 that uses EZVPN to create a VPN to our office. The tunnel drops every 12hrs. This setup used to work when I had a linksys router as my edge device at home. I recently acquired an ASA 5505 to replace the linksys. Below is a cheesy diagram of how things are setup.
EZVPN Client(ASA5505)---ASA5505----Internet----Headend ASA
I'll be posting the config of the EZVPN ASA and the edge ASA at my home in a few. I also have some syslog messages from the EZVPN ASA but I couldn't find any good syslog messages from the edge ASA.... I couldn't find any messages that state that the connection is being blocked.
03-31-2011 02:04 PM
04-04-2011 08:38 PM
Here is a syslog message I get on the EZVPN ASA when the tunnel goes down.
Mar 16 2011 21:21:37: %ASA-4-113019: Group = X.X.X.X, Username = X.X.X.X, IP = X.X.X.X, Session disconnected. Session Type: IPsecOverNatT, Duration: 12h:01m:44s, Bytes xmt: 21336464, Bytes rcv: 2543163, Reason: Lost Service
04-11-2011 06:49 PM
Its sound like a well know bug on vpn connection, the reason is for the feature called DPD, its detect a comunication issue and its down the vpn connection.
04-11-2011 09:48 PM
Any known work around?
04-12-2011 04:46 AM
I think that the workaround is deactivate DPD, the problem its related to the client not to the server.
tell how its result
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide