Solved

Cisco ASA 5510 - recycling services

Posted on 2012-03-27
4
350 Views
Last Modified: 2013-09-18
We have two Cisco ASA 5510's in different cities using site to site vpn, it seems like the connection times out or gets lost every couple of weeks, is there a way to recycle the site to site service or setup a job to recycle it daily or weekly? We had a similar problem with regular users vpn connection this morning, is there a way to recycle the vpn service? I basically want to find a way to refresh these connections without rebooting the ASA everytime one of these issues come up.

Thank You!!
0
Comment
Question by:paclaiborne
  • 3
4 Comments
 
LVL 57

Expert Comment

by:Pete Long
ID: 37772273
issue the following command

clear crypto isakmp sa

or if you know the IP of the other end and you have multiple tunnels i.e.  youdont want to restart them all

clear crypto isakmp sa 123.123.123.123

Or if your an ASDM junkie untick the enable ISAKMP on the outside Interface click apply, then retick and click apply
0
 
LVL 57

Expert Comment

by:Pete Long
ID: 37772421
oops to do one tunnel, clear the ipsec sa like so..............

clear ipsec sa peer 123.123.123.123

I feel an interesting web article coming on :)

Pete
0
 
LVL 57

Accepted Solution

by:
Pete Long earned 500 total points
ID: 37772840
Here you go, I've written it up for you and that's me doing it :)

Cisco ASA 5500 - Reset / Recycle VPN Tunnels


Pete
0
 

Author Closing Comment

by:paclaiborne
ID: 39503841
Sorry we left this question open and never approved the answer.
0

Featured Post

Microsoft Certification Exam 74-409

Veeam® is happy to provide the Microsoft community with a study guide prepared by MVP and MCT, Orin Thomas. This guide will take you through each of the exam objectives, helping you to prepare for and pass the examination.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

From Cisco ASA version 8.3, the Network Address Translation (NAT) configuration has been completely redesigned and it may be helpful to have the syntax configuration for both at a glance. You may as well want to read official Cisco published AS…
Secure VPN Connection terminated locally by the Client.  Reason 442: Failed to enable Virtual Adapter. If you receive this error on Windows 8 or Windows 8.1 while trying to connect with the Cisco VPN Client then the solution is a simple registry f…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

932 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

11 Experts available now in Live!

Get 1:1 Help Now