Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

VPN Concentrator to Pix501 IKE connection churn

In my syslogs from my vpn concentrators I'm seeing a LOT of connection churn.

the messages are:

NAT-Traversal successfully negotiated! IPSec traffic will be encapsulated to pass through NAT devices.

Security negotiation complete for User (xxxx) Responder, Inbound SPI = 0xxxxx, Outbound SPI = 0xxxxxx

PHASE 2 COMPLETED (msgid=97eac10e)

I basically see these messages streaming in constantly from the vpn concentrators... the user ids that are coming up with these messages are pretty consistent as well.

Anybody have any ideas?

Thanks!

1 REPLY
Silver

Re: VPN Concentrator to Pix501 IKE connection churn

If the connections are steady neglect these messages. But check if there are any attacks going on with a sniffer.

110
Views
0
Helpful
1
Replies