cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2934
Views
0
Helpful
0
Replies

Remote Access VPN disconnects after 8 hours

johnathan.t
Level 1
Level 1

Hi All,

Is there a way to have the SA lifetime automatically re-key without interruption?

My ipsec (phase 2) lifetime is 28800 seconds (8 hours) and the isakmp lifetime is 86400 seconds (24 hours). These match both on the firewall and vpn client. We are currently using shrewsoft vpn (latest stable) and in the trace utility our RDP sessions to our office desktops disconnect after the phase 2 lifetime expires. It takes about 5-10 seconds to re-establish but this is inconvenient and enough time to disconnect a file transfer.

We are using a new ASA 5512-X running 8.6(1). I found an old article referencing the same problem from back in april:

http://lists.shrew.net/pipermail/vpn-help/2012-April/004413.html

Is there a solution to this from all you shrewsoft users? Or a different VPN client I should be using? The firewall only came with a 32-bit VPN client on the CD which really suprised me. The 5500-X series was just released this year...

any ideas?

Thanks

-J

0 Replies 0