cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2760
Views
0
Helpful
2
Replies

force IPSec tunnel to stay up even if no traffic

pidomudes
Level 1
Level 1

Hello,

We are running exactly through the same problem as already described here;

https://supportforums.cisco.com/discussion/11666661/can-we-automatically-renegotiate-phase-2-sa-so-vpn-tunnel-stays-even-if-no

We are actually running ASA 9.1 and the remote peer is a Fortigate. Is there new fonction that has been introduce since the forum post above or does creating a sla is the only way to keep up IPsec tunnel.

Regards

1 Accepted Solution

Accepted Solutions

Marvin Rhoads
Hall of Fame
Hall of Fame

Nothing new has been built into the ASA to accommodate this requirement.

I've also had good results a script running on an internal host to send a "tcp ping" to a remote host, thus making sure interesting traffic was present frequently enough to keep the tunnel up.

View solution in original post

2 Replies 2

Marvin Rhoads
Hall of Fame
Hall of Fame

Nothing new has been built into the ASA to accommodate this requirement.

I've also had good results a script running on an internal host to send a "tcp ping" to a remote host, thus making sure interesting traffic was present frequently enough to keep the tunnel up.

Thanks for your help

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: