cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
307
Views
0
Helpful
2
Replies

VPN tunnel permanently UP

J_Vansen_S
Level 3
Level 3

I have an ASA 5510(HQ)running ezvpn server and ISR2811(REMOTE) running ezvpn remote client

I would like to know how is it possible to keep the tunnel up 24 7, i left the connection on for 24hours, every morning remote users will complain that the tunnel is down,

I need the connection to be up 24 7 as we have IP phones with internal extensions at Remote office that we can reach from HQ. Centralize call-processing done at HQ

I tried the crypto isakmp keepalive 20 10 command on the ISR, but it does nothing.

PLz advice

2 Replies 2

dradhika
Cisco Employee
Cisco Employee

Hi,

Have you tried these options under group policy?

vpn-access-hours - Restricts VPN access hours.

vpn-idle-timeout - Specifies the number of minutes a session can be idle before it times out.

vpn-session-timeout - Specifies the maximum number of minutes for VPN connections.

Thanks,

Radhika

ajagadee
Cisco Employee
Cisco Employee

Are you using PAT or NEM mode on the EzVPN Client.

Regards,

Arul