Solved

VPN Tunnel will not complete

Posted on 2012-03-28
1
280 Views
Last Modified: 2012-06-04
I am wondering if anyone else runs into issues like this.  Phase 1 at the remote site(Cisco 881 series router) will complete, but then comes back to the main firewall(clustered 5520s) and Phase 2 does not complete.  In the past I have rebooted our 5520 cluster and that seems to fix it everytime, but i have over 140 remote sites and when I do that, it usually takes a long time for all tunnels to rebuild.  Are there certain commands that can be used in CLI on the 5520 cluster that will clear any caching issues?
0
Comment
Question by:mikhall
1 Comment
 

Accepted Solution

by:
Cyberwrath earned 500 total points
ID: 37782332
You can clear an individual problematic tunnel as follows

ASA2-5520(config)# clear crypto isakmp sa ?

exec mode commands/options:
  Hostname or A.B.C.D     IP address
  Hostname or X:X:X:X::X  IPv6 address
  <cr>

Much cleaner than rebooting the cluster.
0

Featured Post

Maximize Your Threat Intelligence Reporting

Reporting is one of the most important and least talked about aspects of a world-class threat intelligence program. Here’s how to do it right.

Join & Write a Comment

Suggested Solutions

Title # Comments Views Activity
Cisco stacked switches monitoring 4 59
Error on login Cisco RV016 1 16
C3650 Web interface login not working 2 13
Cisco Air AP 6 28
Overview The Cisco PIX 501, PIX 506e, ASA 5505 and ASA 5510 (most if not all of this information will be relevant to the PIX 515e but I do not have a working configuration handy to verify the validity) are primarily used within small to medium busi…
This article will cover setting up redundant ISPs for outbound connectivity on an ASA 5510 (although the same should work on the 5520s and up as well).  It’s important to note that this covers outbound connectivity only.  The ASA does not have built…
Access reports are powerful and flexible. Learn how to create a query and then a grouped report using the wizard. Modify the report design after the wizard is done to make it look better. There will be another video to explain how to put the final p…
In this tutorial you'll learn about bandwidth monitoring with flows and packet sniffing with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're interested in additional methods for monitoring bandwidt…

708 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

13 Experts available now in Live!

Get 1:1 Help Now