• Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 726
  • Last Modified:

CISCO PIX 506E SITE TO SITE VPN - KEEP ALIVE

Hello,

I have recently connected two offices using Cisco Pix 506E's.  From day one we are having problem where if users in remote office leave there application idle i.e. not data flowing through VPN tunnel then the application crashes.

What I would like to know is how to set it so that VPN link never goes idle and is always alive.  I am only familiar with GUI so please let me know where in the GUI I will find the option to do this.

Thanks.
0
fais79
Asked:
fais79
  • 2
1 Solution
 
asavenerCommented:
Actually, the problem is probably with the TCP timeout settings.

What version of PIX OS are you running?  And what version of PDM?

All versions of the PDM have a way to send command-line configuration commands.  The command you want to send the router is:

timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 rpc 0:10:00 h323 0:05:00 sip 0:30:00 sip_media 0:02:00


In your case, you probably want to bump the idle timeout to 8 hours or so:

timeout conn 8:00:00 half-closed 0:10:00 udp 0:02:00 rpc 0:10:00 h323 0:05:00 sip 0:30:00 sip_media 0:02:00

0
 
fais79Author Commented:
PIX Version: 6.3(5)
PDM Version: 3.0(4)
0
 
fais79Author Commented:
.
0
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

Join & Write a Comment

Featured Post

Ultimate Tool Kit for Technology Solution Provider

Broken down into practical pointers and step-by-step instructions, the IT Service Excellence Tool Kit delivers expert advice for technology solution providers. Get your free copy now.

  • 2
Tackle projects and never again get stuck behind a technical roadblock.
Join Now