Keep alive the VPN sessions

Unanswered Question
Oct 21st, 2008
User Badges:

Dear Expert,


I already set up a Site to Site VPN,

but I found that, when the session is idling, the IKE and IPSEC will cut that session. Because the re-establishment need around 5 seconds to resume the VPN.

The startup time is so long in the first connection.


Can I set something to keep alive the sessions or disallow the auto-drop of the idled session?


Because I don't want to use the ping to keep alive the connection/session.


Any advices?


Thanks!

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.
Farrukh Haroon Wed, 10/22/2008 - 04:06
User Badges:
  • Red, 2250 points or more

Try enabling IKE Keepalive/DPD using the following command:


crypto isakmp keepalive


IF NAT-T is utilized, also put:


crypto isamkp nat keepalive


Do it on both sides.


Regards


Farrukh

Actions

This Discussion