cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
605
Views
0
Helpful
1
Replies

Keep alive the VPN sessions

djemba-djemba
Level 1
Level 1

Dear Expert,

I already set up a Site to Site VPN,

but I found that, when the session is idling, the IKE and IPSEC will cut that session. Because the re-establishment need around 5 seconds to resume the VPN.

The startup time is so long in the first connection.

Can I set something to keep alive the sessions or disallow the auto-drop of the idled session?

Because I don't want to use the ping to keep alive the connection/session.

Any advices?

Thanks!

1 Reply 1

Farrukh Haroon
VIP Alumni
VIP Alumni

Try enabling IKE Keepalive/DPD using the following command:

crypto isakmp keepalive

IF NAT-T is utilized, also put:

crypto isamkp nat keepalive

Do it on both sides.

Regards

Farrukh

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: