03-02-2015 09:36 AM
Hi
i have small Question about the LifeTime=86400 for the SIte to Site VPN between two ASA5515
how to achieve lifetime Connection not limited open 24/7 , can i set lifetime =0 for unlimited time
if you know any reference to help me just share it with me
thank you
03-02-2015 10:10 AM
The lowest value possible on a 5500 series ASA is 120 seconds.
http://www.cisco.com/c/en/us/td/docs/security/asa/asa82/configuration/guide/config/ike.html
03-02-2015 10:32 AM
hello Ahmad,
IPSec vpn tunnel must have a tunnel life-time, it is for a security reason it has been created a such.
Reestablishing a tunnel after life-time is expired is seamless reestablishment, users cannot notice it.
thanks
Rizwan Rafeek
03-02-2015 10:33 AM
Yeah i agree with below and also even if you don't specify anything then the default value would used during the negotiation of SA's.
Regards,
Kanwal
Note: Please mark answers if they are helpful.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide