We recently converted our VPN from a 3000 series concentrator to an ASA5520. Out of the 60 or so folks that connect frequently, I have at least 2 that are having a recurring problem. They connect into the VPN just fine. They're able to access all resources just fine. However, at various points in time, their tunnel drops and they lose connectivity. According to the logs on the ASA5520 the reason for the disconnect for that particular person was "User Requested". When looking at the logs from the PC, there are only three entries. I'll add both the ASA logs, filtered for this user's ID, and the VPN Client log file. I've searched and found items similar to this but with no actual fixes.
BTW - We currently have the timout settings (max time, max idle) disabled. This was done as a troubleshooting measure for this.
That's possible. But it happens at multiple locations (his house, a hotel, hotspot, etc). It's also possible that it's his wireless NIC since he seems to have better luck when he's using his Sprint card. What makes it strange is that he didn't start reporting the problem until we migrated to the ASA.
This isn't exactly a reply but I am having a very similar experience on a pair of VPN 3000 cons. These have been in place for a couple of years but over the last couple of weeks, I have been receiving reports of disconnects after a period of time. When I examine the logs, I see very similar issues. IKE key is deleted with reason: no reason given, then user is disconnected with a reason as "User Requested." I cannot seem to find a cause. Please post if you find anything out.
DocumentationCode download linksGoalRequirementLimitationsSupported ISR and UCS-E ModelSupported ISRG2 and UCS-E Blades:Supported ISR4K and UCS-E Blades:Step by Step ConfigurationConfigure one of the connectivity options to access the Cisco IMC from the n...
Firepower Threat Defense (NGFWv) on UCS E-series - Transparent Mode in HA
DocumentationCode download linksGoalRequirementLimitationsSupported ISR and UCS-E ModelSupported ISRG2 and UCS-E Blades:Supported ISR4K and UCS-E Blades:Step by Step ConfigurationCo...
I am currently unable to specify "crypto keyring" command when configuring VPN connection on my cisco 2901 router.
The following licenses have been activated on my router :