09-20-2002 10:04 AM - edited 02-21-2020 12:04 PM
Hi all.
I am working on project using a VPN 3002 in Network Extension Mode, and connecting to a 3030 over a semi-private ISDN dialup provided by a 1603R with DDR, and NAT.
The network connection is fine - I have full functionality from both sides of the tunnel. My problem is that although I have the idle timeout set to 2 minutes, when I have the 3002 set with group name / password and username / password, i.e. automatic connection, it keeps re-establishing the tunnel after each timeout. If I set it to interactive hardware login, it behaves as expected, dropping the connection after 2 minutes, and not bothering the 1603 again until you click the login button in the browser.
Seeing this configuration is for a satellite-connected remote station, and call costs are $6 / min, this situation is not good.
Does anyone have any ideas?
09-27-2002 06:37 AM
Check the IPSec lifetime and ISAKMP lifetime. May be they are set too low.
Also check this URL to configure IPSec over ISDN
09-27-2002 07:22 AM
Hmmm... IPSec - 28800 seconds, IKE/ISAKMP - 86400 seconds. Considering how often it's reconnecting, those seem a bit long to be causing the issue.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide