cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
292
Views
0
Helpful
1
Replies

Crypto lifetime question

whiteford
Level 1
Level 1

Hi, I have a few VPN's connected to my Cisco Concentrator and ASA. The thing is I have never set the life time on the tunnel on the regional sites configs (877's, 1841's), althought on the ASA and Concentrator I have.

What problem's would this create and should I set this?

e.g. Set security-association lifetime seconds 28800

1 Reply 1

smahbub
Level 6
Level 6

To override the global lifetime value for a particular crypto map entry, which is used when negotiating IP Security security associations,the "set security-association lifetime" command is used in crypto map configuration mode.

Command Syntax:

set security-association lifetime {seconds seconds | kilobytes kilobytes}

For more details about this lifetime settings refer :

http://www.cisco.com/en/US/docs/ios/security/command/reference/sec_s2.html#wp1012639

Review Cisco Networking products for a $25 gift card