We have users from our shanghai branch office behind a pix 515 using cisco ipsec vpn client version 5.0.07.0440 to connect to our US Office. At our office we have a cisco ASA 5545x . The users vpn client from our branch office disconnects frequently and all at the same time. All other branches that connect to the US office have no issues. Below is the logs from ASA 5545x and from the vpn client, please suggest
IKE lost contact with remote peer, deleting connection (keepalive type: DPD) IKE SA AM:8705e6c6 rcv'd Terminate: state AM_ACTIVE flags 0x0861d041, refcnt 1, tuncnt 1 sending delete/delete with reason message constructing blank hash payload constructing IPSec delete payload constructing qm hash payload
Sev=Warning/2 CVPND/0xA3400015 Error with call to IpHlpApi.DLL: CheckUpVASettings: Found IPADDR entry addr=x.x.x.x, error 0 Sev=Warning/2 CVPND/0xA3400015 Error with call to IpHlpApi.DLL: CheckUpVASettings: Found IPADDR entry addr=x.x.x.x, error 0 Sev=Warning/2 CVPND/0xA3400015 Error with call to IpHlpApi.DLL: CleanUpVASettings: Was able to delete all VA settings after all, error 0
Table of ContentsIntroductionVersion HistoryPossible Future
UpdatesDocuments PurposeNAT Operation in ASA 8.3+ SectionsRule Types
Network Object NATTwice NAT / Manual NATRule Types used per SectionNAT
Types used with Twice NAT / Manual NAT and Network Obje...
Table of Contents Introduction:This document describes details on how
NAT-T works. Background: ESP encrypts all critical information,
encapsulating the entire inner TCP/UDP datagram within an ESP header.
ESP is an IP protocol in the same sense that TCP an...