06-03-2025 12:27 PM
Hello All,
I need your help again.
So, we manage one of our client's WAN router which is a Cisco 1121-4P router.
Flex anyconnect VPN is configured on it.
The issue is that users sometimes get disconnected randomly and get the attached error when they try to reconnect.
The users can connect again only after rebooting the WAN router.
Is it a Cisco bug? Please help me fix this issue.
Eagerly waiting for some help/advice/fix.
06-19-2025 12:44 PM
Hi
Are this issue solved ?
MHM
06-19-2025 01:35 PM
Unfortunately, No sir.
06-19-2025 01:55 PM
What is ikev2 phaseI abd phaseII lifetime ?
MHM
06-20-2025 08:47 AM
I am using default parameters.
Encr: AES-CBC, keysize: 256, PRF: SHA512, Hash: SHA512, DH Grp:21, Auth sign: RSA, Auth verify: AnyConnect-EAP
Life/Active Time: 86400/843 sec -- phase 1
Phase 2 is 3600 seconds I think
06-20-2025 11:09 AM
that good
can you add dpd under ikev2 profile
dpd 10 3 periodic
MHM
06-20-2025 11:18 AM
Done. I'll let you know if it does the same thing again.. Tysm Sir.. Really appreciate it!
09-02-2025 11:18 AM
Phase 2 is 3600 seconds I think
09-02-2025 11:21 AM
No Sir.. It's still kicking out users and allowing them to log back in only after the Cisco 1121-4P router is rebooted.
I am struggling to find a permanent fix. When I googled, I came across this article as the closest answer to my problem. I have implemeted the change as told in the article.
09-02-2025 12:24 PM
I think I might have to upgrade the ios.
Currently it is on Cisco IOS XE Software, Version 17.02.02
Can you guide how to download 17.9.x or 17.12.x?
09-02-2025 12:35 PM
Before that
Try reconnect feature
MHM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide