We have a Catalyst 6506 with IPSEC\VPN SPA which terminates the IPSec tunnels from remote locations, and at first look everything seems to work fine. If we for example restart interface at remote location where tunnel terminates, 6506 stops answering to arp requests from remote router. If after that we restart vlan interface at 6506 everything again works fine. Does anybody have an idea why VPN module answers only first arp request from remote side of the tunnel?
I have this problem too.