03-27-2018 11:27 AM - edited 03-12-2019 05:08 AM
Hi We are going to upgrade ios in router 3825. The router has a lot vpn connections now. My question is what could happen and what we are going to do for the VPN during the upgrading ios. At least we need reboot one time for the upgrade. We hope least downtime for the upgrade. Thank you
03-27-2018 12:05 PM
03-27-2018 02:59 PM - edited 03-27-2018 03:25 PM
Thank you! that is very good suggestion. i guess it does. Can we confirm the backup exist by some command?
If it does not have backup, do you think every vpn in this router should work well without any actions on it after the reboot? I remember some vpn is vulnerable due to some reason.
03-28-2018 04:37 AM
Hi, When I said backup I was referring to another router with a backup VPN. I assume you only have 1 router? In which case you will experience and outage on the VPNs.
When you reboot the router the other VPNs will obviously lose connectivity, if they are configured with Dead Peer Detection, they should detect the main router is down and clear the tunnel (delete the ISAKMP and IPSec SAs) , see these links for more information on DPD - link1 and link2 and link3
When the router is up and working again the other tunnels should reconnect. In case of any issues ensure you have connectivity to the remote routers when the tunnel is down so you can troubleshoot and reset the VPN if needed.
HTH
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide