site to site tunnel b/n 2 cisco pix 501 requires reset to re-establish tunnel after idle timeout

Posted on 2007-10-21
Last Modified: 2012-05-05
I have created a Site to Site tunnel.  On one end, the ISP will only give a static IP by "pushing it down" to their DSL modem.  I have the Pix behind the ISP modem/router.  The ISP Router issues a private DHCP address 192.168.5.x to the Pix outside interface.  The tunnel comes up fine initially but after an inactivity timeout the tunnel will not rebuild until the equipment  (ISP router and Pix)is reset.  
Question by:wiseman4250
    LVL 79

    Expert Comment

    Put the dsl modem into bridge mode and let the PIX get the public IP address.
    Or setup a script on a pc to ping something across the vpn tunnel every once in a while to keep the tunnel up.

    Author Comment

    The isp will not allow me to set the modem to bridge mode.  I don't have any pc's at the remote.  Only priners and thin clients.  Is there a way to have the pix run the ping?
    LVL 79

    Accepted Solution

    The pix can't do any scripting. You should be able to ping a printer from your side.

    Write Comment

    Please enter a first name

    Please enter a last name

    We will never share this with anyone.

    Featured Post

    Top 6 Sources for Identifying Threat Actor TTPs

    Understanding your enemy is essential. These six sources will help you identify the most popular threat actor tactics, techniques, and procedures (TTPs).

    Suggested Solutions

    Title # Comments Views Activity
    Nexus qos question 2 51
    Website through the inside interface. 6 54
    CUCM and two Polycom 7936 using 3 11
    Find VLAN ID's 6 25
    Overview The Cisco PIX 501, PIX 506e, ASA 5505 and ASA 5510 (most if not all of this information will be relevant to the PIX 515e but I do not have a working configuration handy to verify the validity) are primarily used within small to medium busi…
    I recently updated from an old PIX platform to the new ASA platform.  While upgrading, I was tremendously confused about how the VPN and AnyConnect licensing works.  It turns out that the ASA has 3 different VPN licensing schemes. "site-to-site" …
    This video is in connection to the article "The case of a missing mobile phone (". It will help one to understand clearly the steps to track a lost android phone.
    In this sixth video of the Xpdf series, we discuss and demonstrate the PDFtoPNG utility, which converts a multi-page PDF file to separate color, grayscale, or monochrome PNG files, creating one PNG file for each page in the PDF. It does this via a c…

    779 members asked questions and received personalized solutions in the past 7 days.

    Join the community of 500,000 technology professionals and ask your questions.

    Join & Ask a Question

    Need Help in Real-Time?

    Connect with top rated Experts

    16 Experts available now in Live!

    Get 1:1 Help Now