cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1920
Views
0
Helpful
1
Replies

IPSEC Over UDP Connection Timeout

Ramakrishnan R
Level 1
Level 1

How do i modify the Connection timeout for RA VPN. My connections are getting dropped after 60 Minutes. I am using Radius Server.

The following is my group-policy configuration and logs.

group-policy CLOUD-MGMT attributes

dns-server value 202.144.66.6 202.144.10.50

vpn-idle-timeout 35791394

vpn-session-timeout 35791394

password-storage enable

ipsec-udp enable

ipsec-udp-port 10000

split-tunnel-policy tunnelspecified

split-tunnel-network-list value CLOUD-INFRA

Username     :

Index        : 1

Assigned IP  : 192.168.98.117         Public IP    : 210.210.114.204

Protocol     : IPSecOverUDP           Encryption   : 3DES

Hashing      : MD5

Bytes Tx     : 2695361                Bytes Rx     : 71692

Client Type  : WinNT                  Client Ver   : 4.8.01.0300

Group Policy : CLOUD-MGMT

Tunnel Group : cloud-infra

Login Time   : 19:43:14 IST Thu Nov 22 2012

Duration     : 0h:32m:08s

Filter Name  :

NAC Result   : N/A

Posture Token:

IKE Sessions: 1

IPSecOverUDP Sessions: 1

IKE:

  Session ID   : 1

  UDP Src Port : 500                    UDP Dst Port : 500

  IKE Neg Mode : Aggressive             Auth Mode    : preSharedKeys

  Encryption   : 3DES                   Hashing      : MD5

  Rekey Int (T): 86400 Seconds          Rekey Left(T): 84472 Seconds

  D/H Group    : 2

IPSecOverUDP:

  Session ID   : 2

  Local Addr   : 0.0.0.0/0.0.0.0/0/0

  Remote Addr  : 192.168.98.117/255.255.255.255/0/0

  Encryption   : 3DES                   Hashing      : MD5

  Encapsulation: Tunnel                 UDP Dst Port : 10000

  Rekey Int (T): 28800 Seconds          Rekey Left(T): 26870 Seconds

  Idle Time Out: 715827 Minutes         Idle TO Left : 715828 Minutes

Conn Time Out: 60 Minutes             Conn TO Left : 28 Minutes

  Bytes Tx     : 2695361                Bytes Rx     : 71692

  Pkts Tx      : 2498                   Pkts Rx      : 1684

Any Help is appreciated

1 Reply 1

Peter Koltl
Level 7
Level 7

Doesn't it come from the RADIUS server?