Thursday, November 1, 2018

Point-to-point vpn ipsec tunnel help - cisco ios

Have a vpn tunnel to another branch always on.

Nromally when I run show crypto session. The tunnels are UP-ACTIVE, as of late I'm seeing them as UP-NO-IKE. Data is still traversing the tunnels as far as I can tell however when they are in this state I'm getting reports of slower branch to branch speeds. Show crypto isakmp sa, will show no active SAs. I'm at a total loss why all the sudden the SAs are dropping. Clear crypto session resolves the issue for a few hours and the process repeats.



No comments:

Post a Comment