cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
230
Views
0
Helpful
1
Replies

PIX 515 stops all traffic to Cisco VPN Concetrator 3030 every few days.

jerry.friedman
Level 1
Level 1

My PIX is stopping all traffic from flowing to my VPN Concentrator every few days. Once I reboot the PIX all goes back to normal. This problem is occuring every 4 days or so. Any ideas, or suggesions?

1 Reply 1

steve.barlow
Level 7
Level 7

I am guessing the failure occurs when the key lifetime expires (maybe not everytime it expires but on some) - similar to bug CSCds53316. Try to debug on the PIX - debug crypto engine (show encrypted traffic), debug crypto ipsec (IPSec negotiations of phase 2), debug crypto isakmp (the ISAKMP negotiations of phase 1). Look to see error messages.

Does all traffic stop, or just IPSEC? Does it correspond to high traffic throughput when this happens?

Steve