cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2075
Views
0
Helpful
1
Replies
Highlighted
Beginner

How Anyconnect DPD works?

Hi,

I have the problem Anyconnect 3.0.1 connects to ASA 8.4. After short provider outage the session is broken and not reconnects. A new connection fails because user get their IP address from AAA server, static and this is still in use at the ASA. Show session-db shows the session until it times out after 5 mins idle.Client and Gateway DPD-Intervalls are configured to 30s. Why client cannot reconnect or ASA session is not deleted if DPD should see the session problems?

Thank you

1 REPLY 1
Highlighted
Cisco Employee

Hi Andre,

Funny you should ask I saw very similar sessions (for which we're waiting for logs) on ASA 8.2.3 and anyconnect 2.5.

Typically you need to send 4 DPD packets to assume session dead... which should make sure 2 minutes ... not 5.

Would you be willing to run debug on the ASA to check the the DPDs are kicking in at all and at what interval?

Marcin

Content for Community-Ad