cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
644
Views
0
Helpful
5
Replies

IPsec VPN can not resume

xu-l
Level 1
Level 1

I use a PIX firewall make VPN session with remote peer ,

but the internet connection is not stabilization,when internet connection is been resumed, the PIX can not resumed the VPN seesion.

How can I do to make PIX resumed VPN session automaticly

5 Replies 5

mostiguy
Level 6
Level 6

there is no great solution for this in the ipsec standard - normally tunnels do not renegotiate until either the data, or time lifetime expires. you could cut down the time lifetime in your configuration.

what is at the end of the vpn tunnel? another pix?

the end of the vpn tunnel is PIX or Cisco router

there are many of peers

Hi -

Considered split-tunnelling ?

HTH --

pixen have a proprietary isakmp keepalive command. I am pretty certain that IOS supports it too. You should be able to use that on all ios/pix to ios/pix vpn tunnels. I have never used it, so I cannot offer any real world advice on it.

I have search Cisco PIX`s commands,the commands is:

crypto ipsec set security-association lifetime seconds [seconds]

but i can't comfirm this command can resolved it.

who have been used this command,can you tell me what is happened.