Solved

Cisco VPN Tunnels

Posted on 2009-04-02
9
419 Views
Last Modified: 2012-05-06
Hi experts,
Our ISP is planning an downtime of a core switch and we have about 14 remote locations that will loose VPN tunnels due to this outage. When the site comes back up, will the remove locations reestablish the vpn tunnels dynamically?

Let me know if you need more information.

Thanks,
Marek
0
Comment
Question by:maredzki
  • 4
  • 4
9 Comments
 
LVL 43

Accepted Solution

by:
JFrederick29 earned 250 total points
Comment Utility
They will re-establish when "interesting traffic" attempts to traverse the tunnel.  You don't need to manually bring up the tunnels.
0
 
LVL 20

Expert Comment

by:RPPreacher
Comment Utility
Yes, as soon as they receive "interesting traffic".  Tunnels stay down until needed.
0
 
LVL 2

Author Comment

by:maredzki
Comment Utility
Will ICMP packets from our monitoring be considered "interesting traffic"?
0
 
LVL 43

Expert Comment

by:JFrederick29
Comment Utility
Sure as long as it falls within the interesting traffic rules.
0
Maximize Your Threat Intelligence Reporting

Reporting is one of the most important and least talked about aspects of a world-class threat intelligence program. Here’s how to do it right.

 
LVL 2

Author Comment

by:maredzki
Comment Utility
How would I know, of find that?
0
 
LVL 43

Expert Comment

by:JFrederick29
Comment Utility
Here is a simple way.  What IP are you monitoring? The "inside" or LAN interface IP of the remote VPN device or the "outside" WAN/Public IP of the remote device?  If the inside, it's going over the tunnel.
0
 
LVL 2

Author Comment

by:maredzki
Comment Utility
I am actually monitoring the public IP address and some of the devices behind that using non routable IPs.
0
 
LVL 43

Expert Comment

by:JFrederick29
Comment Utility
Okay, well if monitoring non routable IP's behind it, it is going over the tunnel.
0
 
LVL 2

Author Closing Comment

by:maredzki
Comment Utility
Thanks for the good info. Ultimately we will find out Tuesday morning after the work will finish.

Thanks!
Marek
0

Featured Post

How to run any project with ease

Manage projects of all sizes how you want. Great for personal to-do lists, project milestones, team priorities and launch plans.
- Combine task lists, docs, spreadsheets, and chat in one
- View and edit from mobile/offline
- Cut down on emails

Join & Write a Comment

If you have an ASA5510 then this sort of thing would be better handled with a CSC Module, however on an ASA5505 thats not an option, and if you want to throw in a quick solution to stop your staff going to facebook during work time, then this is the…
I recently updated from an old PIX platform to the new ASA platform.  While upgrading, I was tremendously confused about how the VPN and AnyConnect licensing works.  It turns out that the ASA has 3 different VPN licensing schemes. "site-to-site" …
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

763 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

6 Experts available now in Live!

Get 1:1 Help Now