cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
3214
Views
0
Helpful
2
Replies

force IPSec tunnel to stay up even if no traffic

pidomudes
Level 1
Level 1

Hello,

We are running exactly through the same problem as already described here;

https://supportforums.cisco.com/discussion/11666661/can-we-automatically-renegotiate-phase-2-sa-so-vpn-tunnel-stays-even-if-no

We are actually running ASA 9.1 and the remote peer is a Fortigate. Is there new fonction that has been introduce since the forum post above or does creating a sla is the only way to keep up IPsec tunnel.

Regards

1 Accepted Solution

Accepted Solutions

Marvin Rhoads
Hall of Fame
Hall of Fame

Nothing new has been built into the ASA to accommodate this requirement.

I've also had good results a script running on an internal host to send a "tcp ping" to a remote host, thus making sure interesting traffic was present frequently enough to keep the tunnel up.

View solution in original post

2 Replies 2

Marvin Rhoads
Hall of Fame
Hall of Fame

Nothing new has been built into the ASA to accommodate this requirement.

I've also had good results a script running on an internal host to send a "tcp ping" to a remote host, thus making sure interesting traffic was present frequently enough to keep the tunnel up.

Thanks for your help