Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

PIX 515 stops all traffic to Cisco VPN Concetrator 3030 every few days.

My PIX is stopping all traffic from flowing to my VPN Concentrator every few days. Once I reboot the PIX all goes back to normal. This problem is occuring every 4 days or so. Any ideas, or suggesions?

1 REPLY

Re: PIX 515 stops all traffic to Cisco VPN Concetrator 3030 ever

I am guessing the failure occurs when the key lifetime expires (maybe not everytime it expires but on some) - similar to bug CSCds53316. Try to debug on the PIX - debug crypto engine (show encrypted traffic), debug crypto ipsec (IPSec negotiations of phase 2), debug crypto isakmp (the ISAKMP negotiations of phase 1). Look to see error messages.

Does all traffic stop, or just IPSEC? Does it correspond to high traffic throughput when this happens?

Steve

89
Views
0
Helpful
1
Replies