06-15-2023 05:07 AM - edited 06-15-2023 05:20 AM
Hello Team,,,
I work for a service provider and we have a customer who has two branches, one of the branches outside the country and the other connected with us.
He has a problem that there is no service interruption, but he has a problem with the interface tunnel between the two branches, send this trap
IPsec Phase-1 IKE Tunnel became inactive.
Does he have a problem with us?
How i can troubleshooting this issue ?
06-15-2023 05:15 AM
Tunnel up/down ' this is not ipsec it is vti or ipsdc over gre tunnel' am I right ?
06-15-2023 05:18 AM
This what is his trap
IPsec Phase-1 IKE Tunnel became inactive
06-15-2023 05:21 AM
Tunnel need traffic to initiate phaseI and phaseII
Here you need two thing
1- isakmp keepalive
2- ip sla between two side make tunnel always up.
06-15-2023 05:34 AM
06-15-2023 05:42 AM
Can I see show crypto isakmp sa
06-15-2023 05:44 AM
no i cant, because it is from customer side and i don't have access on his routers.
06-15-2023 05:42 AM - edited 06-15-2023 05:45 AM
.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide