Keep alive the VPN sessions

Unanswered Question
Oct 21st, 2008
User Badges:

Dear Expert,

I already set up a Site to Site VPN,

but I found that, when the session is idling, the IKE and IPSEC will cut that session. Because the re-establishment need around 5 seconds to resume the VPN.

The startup time is so long in the first connection.

Can I set something to keep alive the sessions or disallow the auto-drop of the idled session?

Because I don't want to use the ping to keep alive the connection/session.

Any advices?


  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Farrukh Haroon Wed, 10/22/2008 - 04:06
User Badges:
  • Red, 2250 points or more

Try enabling IKE Keepalive/DPD using the following command:

crypto isakmp keepalive

IF NAT-T is utilized, also put:

crypto isamkp nat keepalive

Do it on both sides.




This Discussion