cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
6062
Views
0
Helpful
3
Replies

FMC / FTD site to site VPN logout

Lee Dress
Level 1
Level 1

I've been having an issue in FTD 7.0.5 on FMC. My site to site tunnels lose connectivity to certain VLANS in my main site. 

it's not always the same VLAN or the same device.  it's not ALL vlans, just 1 out of 5. it's random. 

My question is, on the old ASDM, you could restart a tunnel by logging it out from one side or the other. 

I can't find that functionality in FMC, so I'm forced to reboot the remote device. 

is there a way to logout a Site to Site tunnel in FMC?  

1 Accepted Solution

Accepted Solutions

@Lee Dress from the CLI of the FTD you can run clear crypto ipsec sa peer <ip address> which will delete the IPSec SA for that peer. You'd then need to generating interesting traffic in order for the VPN tunnel to be re-established.

View solution in original post

3 Replies 3

@Lee Dress from the CLI of the FTD you can run clear crypto ipsec sa peer <ip address> which will delete the IPSec SA for that peer. You'd then need to generating interesting traffic in order for the VPN tunnel to be re-established.

Lee Dress
Level 1
Level 1

Thanks to both of you.  I appreciate the quick response!