cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
366
Views
0
Helpful
3
Replies

re-establishing IPSec SA

mjerbi
Level 1
Level 1

I have setup a connection between 2 FW (Cisco PIX-506 and WatchGuard Firebox) via VPN tunnel ... It works fine until SA lifetime expires and the the new ISAKMP SA is not initiated.

The only way to make it work is to restart the PIX.

Any idea ? Thanks in advance.

3 Replies 3

mjerbi
Level 1
Level 1

Any help?

Hey man,

I can't remember for sure,

but when I did it (it was a while ago)

change the sa time to 0

that should hold the connection. if not i will look up my config later today and get back to you tomorrow

Jason :)

Thanks for the tip, it did work fine ... but it seems to be slowing down the traffic (PIX-506) since we are holding the connection.