I have setup a Remote Access IPSec VPN connection to an ASA5510 appliance. I am able to establish the connection, however, there is a delay upwards of two minutes before I am able to ping anything on the internal network, or access resources. The statistics screen in the Cisco VPN client software shows packets being sent, but none received. After a couple of minutes, everything seems to work fine. I was wondering if anyone has seen this before?
I am using version 5.0.04.0300 of the VPN client. The ASA is running 8.0(3).
Odd one. One thing that comes to mind could be to do with routing convergence times with a protocol such as RIP? If you are not using static routes etc but redistributing the VPN address into a dynamic routing protocol (Reverse Route Injection) it could take a while for that to converge with all devices if using RIP for example.
Well, it look like I figured out the problem, or at least know the culprit.
I tried using the VPN client on another machine in my test network, and it worked without a hitch. Within a second or two the resources became available.
The original machine I tested with (my laptop), has the Novell client loaded on it, and I am guessing that this software is somehow causing the problem. Even though I chose to log on locally, I am guessing the fact that it's loaded is causing the problem. By the way, this is an XP machine.
DocumentationCode download linksGoalRequirementLimitationsSupported ISR
and UCS-E ModelSupported ISRG2 and UCS-E Blades:Supported ISR4K and
UCS-E Blades:Step by Step ConfigurationConfigure one of the connectivity
options to access the Cisco IMC from the n...
Firepower Threat Defense (NGFWv) on UCS E-series - Transparent Mode in
HA DocumentationCode download linksGoalRequirementLimitationsSupported
ISR and UCS-E ModelSupported ISRG2 and UCS-E Blades:Supported ISR4K and
UCS-E Blades:Step by Step ConfigurationCo...
Question I am currently unable to specify "crypto keyring" command when
configuring VPN connection on my cisco 2901 router. The following
licenses have been activated on my router :