Solved

Cisco ASA 5510 - recycling services

Posted on 2012-03-27
4
352 Views
Last Modified: 2013-09-18
We have two Cisco ASA 5510's in different cities using site to site vpn, it seems like the connection times out or gets lost every couple of weeks, is there a way to recycle the site to site service or setup a job to recycle it daily or weekly? We had a similar problem with regular users vpn connection this morning, is there a way to recycle the vpn service? I basically want to find a way to refresh these connections without rebooting the ASA everytime one of these issues come up.

Thank You!!
0
Comment
Question by:paclaiborne
  • 3
4 Comments
 
LVL 57

Expert Comment

by:Pete Long
ID: 37772273
issue the following command

clear crypto isakmp sa

or if you know the IP of the other end and you have multiple tunnels i.e.  youdont want to restart them all

clear crypto isakmp sa 123.123.123.123

Or if your an ASDM junkie untick the enable ISAKMP on the outside Interface click apply, then retick and click apply
0
 
LVL 57

Expert Comment

by:Pete Long
ID: 37772421
oops to do one tunnel, clear the ipsec sa like so..............

clear ipsec sa peer 123.123.123.123

I feel an interesting web article coming on :)

Pete
0
 
LVL 57

Accepted Solution

by:
Pete Long earned 500 total points
ID: 37772840
Here you go, I've written it up for you and that's me doing it :)

Cisco ASA 5500 - Reset / Recycle VPN Tunnels


Pete
0
 

Author Closing Comment

by:paclaiborne
ID: 39503841
Sorry we left this question open and never approved the answer.
0

Featured Post

Netscaler Common Configuration How To guides

If you use NetScaler you will want to see these guides. The NetScaler How To Guides show administrators how to get NetScaler up and configured by providing instructions for common scenarios and some not so common ones.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Quality of Service (QoS) options are nearly endless when it comes to networks today. This article is merely one example of how it can be handled in a hub-n-spoke design using a 3-tier configuration.
If you use NetMotion Mobility on your PC and plan to upgrade to Windows 10, it may not work unless you take these steps.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
As a trusted technology advisor to your customers you are likely getting the daily question of, ‘should I put this in the cloud?’ As customer demands for cloud services increases, companies will see a shift from traditional buying patterns to new…

773 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question