VPN Concentrator to Pix501 IKE connection churn

Unanswered Question

In my syslogs from my vpn concentrators I'm seeing a LOT of connection churn.

the messages are:

NAT-Traversal successfully negotiated! IPSec traffic will be encapsulated to pass through NAT devices.

Security negotiation complete for User (xxxx) Responder, Inbound SPI = 0xxxxx, Outbound SPI = 0xxxxxx

PHASE 2 COMPLETED (msgid=97eac10e)

I basically see these messages streaming in constantly from the vpn concentrators... the user ids that are coming up with these messages are pretty consistent as well.

Anybody have any ideas?


  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
irisrios Wed, 03/12/2008 - 06:42
User Badges:
  • Silver, 250 points or more

If the connections are steady neglect these messages. But check if there are any attacks going on with a sniffer.


This Discussion