02-15-2012 01:14 AM
Hi,
We have successfully connected the pix501 and asa 5505 firewallls using ipsec vpn.
the firewalls and servers and beeing shutdown after office hours.
the problem is everytime we turn on the firewalls, we need to do "ping" on vpn inorder to establish vpn connection with the two firewalls.
After doing a ping command. The VPN connection between firewalls is established.
we us vpdn to create a tunnel to the asa firewall.
Can you help us with this one?
Thanks
02-15-2012 05:21 PM
AFAIK, you need some interesting traffic to initiate the tunnel. In your case you are using ping. Tunnel should also reestablish if you try to access any resource on the other end.
Thx
MS
02-16-2012 05:24 AM
is there any way that I can auto reconnect the Tunnel upon turn on?
02-16-2012 10:22 AM
My question is, why do you want the tunnel to remain active all the time?
The only way I know of to achieve this is with the 'originate only' and 'answer only' commands in the crypto map which is not possible with the PIX. Even in this case, the individual phase 2 SAs will still need to be established by interesting traffic.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide