Hello guys
Is there any possibility to limie active ipsec SAa per one IKE session on ASR1k platform (Cisco IOS XE Software, Version 03.10.03.S, Version 15.3(3)S3) ?
I know how to limit total active ipsec SA, IKE SA, or IKE SAa in negotiation, but I cannot find how to limit it per one device (one IKE session), e.g. on F5 tou can define
Type of VPN | Field | Recommended Value |
Site to site | number_of_ipsec_SAs_per_IKE_SA
| 30 |
Remote user | number_of_ipsec_SAs_per_user_IKE_SA
| 5 |
TiA
Cheers
Andrzej