Hey All,
I've got the following setup. A couple of remote PIX FWs connected via vpn to a Cisco router sitting behind a Checkpoint FW at the Head Site. The VPN tunnel (ipsec l2l) itself is always up and running, no issues there. The problems appears when we burn the Checkpoint Firewall rulebase, which can take 5-10mins. This somehow, always disconnects the VPN connection. (The only way to bring it back up is to jump to the remote PIX to initate interesting traffic) Now this only happens on PIX 7.x FWs. Remote FWs running 6.3(x) doesn't have this issues. I've checked all ike/ipsec sa timeouts etc. and everything is exactly the same on the PIX and Cisco Router. I've play around with the isakmp keepalive threshold timeouts etc. event disabled it. But Still having the same problem. Anyone come across this before? or know a workaround/fix?
Thanks.