VPN Concentrator to Pix501 IKE connection churn

Unanswered Question

In my syslogs from my vpn concentrators I'm seeing a LOT of connection churn.


the messages are:



NAT-Traversal successfully negotiated! IPSec traffic will be encapsulated to pass through NAT devices.


Security negotiation complete for User (xxxx) Responder, Inbound SPI = 0xxxxx, Outbound SPI = 0xxxxxx


PHASE 2 COMPLETED (msgid=97eac10e)



I basically see these messages streaming in constantly from the vpn concentrators... the user ids that are coming up with these messages are pretty consistent as well.


Anybody have any ideas?


Thanks!



  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.
irisrios Wed, 03/12/2008 - 06:42
User Badges:
  • Silver, 250 points or more

If the connections are steady neglect these messages. But check if there are any attacks going on with a sniffer.

Actions

This Discussion