maximum session VPN 3015

Unanswered Question
Jul 26th, 2007
User Badges:

Good morning,

It was just brought to our attention that we have reached max sessions on the VPN 3015 concentrator (100 max sessions). I would like to swap this out with a VPN 3030 (1500 max sessions). But I have a couple of questions.

1. Which entry on the group will disconnect personnel after, let's say, 20 minutes of inactivity?

2. Can I basically just back up the configurations of each concentrator and restore so that all we lose is the time it takes to make the physical swap out?



  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 5 (1 ratings)
smahbub Wed, 08/01/2007 - 10:22
User Badges:
  • Silver, 250 points or more

I think to configure auto disconnect after an idle period first go to Configuration | User Management | Groups | Modify IPSec TAB.Check what is the IPSec SA. Then go to Configuration | Policy Management | Traffic Management | Security Associations | Modify. Configure the Time Lifetime to required time. Apply the changes

Then take a look on the IKE Proposal, Go to Configuration | Tunneling and Security | IPSec | IKE Proposals, Select and modify the proposal in order to use Time Lifetime= required time. For second question, I think you can copy the same configuration to new concentrator.


This Discussion