Cisco Support Community
Showing results for 
Search instead for 
Did you mean: 

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

vpn between checkpoint and cisco VPN router: ike keepalive

We use a 7206VXR IOS 122.8T with HW encryption card as VPN gateway. On this system there are multiple VPN peers configured and we use the cisco feature "crypto isakmp keepalive" to track the tunnels (High Availability Features for Site-to-Site IPSec VPNs).

Problem is that on this gateway, we want now to establish a new tunnel with a checkpoint FW 4.1 SP6 Solaris.

We cannot establish this tunnel as long as with have the crypto isakmp keepalive feature in use. When I deactivate this global configuration, the tunnel then works perfectly.

Does anyone know how to configure the keepalive feature only for a specific VPN connection and to deactivate it for the checkpoint VPN connection ?

CreatePlease to create content