cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
285
Views
0
Helpful
1
Replies

Questions on Backup Server settings on VPN Remote Client(Hardware&Software)

engel
Level 2
Level 2

Here are our finding with backup server setting with VPN3002 hardware remote client and software remote client:

1. VPN3002 needs around 120 seconds to detect a dead Concentrator before it does failover to the other available Concentrator.

2. VPN Software Remote Client has configureable setting for detecting the IKE peer which is between 30-480 seconds.

Questions:

1. What method does the remote-client use for detecting if its Concentrator is dead or alive ? Does it use any kind of Cisco proprietary protocol ?

2. VPN Software remote client has a configureable setting for detecting its peer. VPN3002 does not have any setting on it. Am I miss the setting or it just can not be configured ?

Appreciate for any help.

Best Regards

1 Reply 1

awaheed
Cisco Employee
Cisco Employee

Answers in-line:

1. The protocol used for that is called DPD (Dead Peer detection)

2. VPN3002 should use the same protocol to detect failure.

Both of these are available for v3.x and above for both hardware and software clients.

Thanks,

Aamir