Site-site VPN issue

Unanswered Question
Dec 20th, 2007
User Badges:
  • Gold, 750 points or more

Hi All,

Iam trying to establish a VPN tunnel between satellite office& HQ with ASA5510. Please find the attached satellite ASA config. After adding the satellite public IP , transform-set , pre-shared key info in to HQ ASA tunnel is not building. 'Show crypto isakmp sa : There are no isakmp sas.

HQ ASA already has mulitple tunnels to otehr offices.

Please advice

Thank you


  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
mvsheik123 Fri, 12/21/2007 - 09:33
User Badges:
  • Gold, 750 points or more


I got the L2L tunnel up. But it is dropping by its own after certin time (not sude how much). I have to initiate 'ping' from my PC to bring it up.The lifetime in isakmp policy set to 86400 Sec. Any clue what else should I check...?

Myasa# sh crypto isakmp sa

Active SA: 1

Rekey SA: 0 (A tunnel will report 1 Active and 1 Rekey SA during rekey)

Total IKE SA: 1

1 IKE Peer:

Type : L2L Role : initiator

Rekey : no State : MM_ACTIVE


This Discussion