VPN client left two hours with no traffic. Tunnel collapsed although configured incident time out. SHOW TECH and selected SYSLOG outputs attached.
Customer says it is not necessarily 2 hours all the time. So time idle connections can time out in 40 minutes or so.
Now
vpn-idle-timeout none
command is there under
group-policy DfltGrpPolicy attributes