Sunday, April 28, 2019

Palo Alto > Cisco ASA Route based VPN dropping

We have Palo's in HQ and a route-based VPN from them to 2 locations, both terminating on an ASA. Both VPN's are using the same config, i configured them myself. The Palo side is using the same config as well.

I have path monitors set up on the Palo, but one of the VPN tunnels drops every 11-12 hours. Im guessing this is due to some re-key event or timer running out.

The thing is the config is identical to the VPN that never goes down! What can i look at in-depth to get to the bottom of this?



No comments:

Post a Comment