cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
822
Views
0
Helpful
3
Replies

VPN connection between Pix 501 and ASA 5505

Hi,

We have successfully connected the pix501 and asa 5505 firewallls using ipsec vpn.

the firewalls and servers and beeing shutdown after office hours.

the problem is everytime we turn on the firewalls, we need to do "ping" on vpn inorder to establish vpn connection with the two firewalls.

After doing a ping command. The VPN connection between firewalls is established.

we us vpdn to create a tunnel to the asa firewall.

Can you help us with this one?

Thanks

3 Replies 3

mvsheik123
Level 7
Level 7

AFAIK, you need some interesting traffic to initiate the tunnel. In your case you are using ping. Tunnel should also reestablish if you try to access any resource on the other end.

Thx

MS

is there any way that I can auto reconnect the Tunnel upon turn on?

My question is, why do you want the tunnel to remain active all the time? 

The only way I know of to achieve this is with the 'originate only' and 'answer only' commands in the crypto map which is not possible with the PIX.  Even in this case, the individual phase 2 SAs will still need to be established by interesting traffic.