cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
665
Views
0
Helpful
3
Replies

Site to Site VPN Tunnel terminates frequently

alex.dersch
Level 4
Level 4

Dear Forum,

I am experiencing a strange behavior on a Cisco PIX 515.Site to Site Tunnel s terminating quite often and I get this message.

May 14 10:26:05 192.168.254.133 %PIX-5-713050: Group = 91.198.79.162, IP = 91.198.79.162, Connection terminated for peer 91.198.79.162. Reason: IPSec SA Idle Timeout Remote Proxy 192.168.84.0, Local Proxy 172.26.0.0

Any ideas?

Cheers

Alex

3 Replies 3

wong34539
Level 6
Level 6

The problem might be with the IP pool assignment either through ASA/PIX or Radius server. Use the debug crypto command in order to verify that the netmask and IP addresses are correct. Also, verify that the pool does not include the network address and the broadcast address. Radius servers must be able to assign the proper IP addresses to the clients

Thank you your posting, unfortunately there is no Radius server involved. This is a site to site vpn, there is assignment of ip addressen to clients.

Regards

Alex

koltl-gold
Level 1
Level 1

group-policy S2S attributes

vpn-idle-timeout none

Default is 30 minutes.

Peter

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: