Solved

VPN Tunnel will not complete

Posted on 2012-03-28
1
282 Views
Last Modified: 2012-06-04
I am wondering if anyone else runs into issues like this.  Phase 1 at the remote site(Cisco 881 series router) will complete, but then comes back to the main firewall(clustered 5520s) and Phase 2 does not complete.  In the past I have rebooted our 5520 cluster and that seems to fix it everytime, but i have over 140 remote sites and when I do that, it usually takes a long time for all tunnels to rebuild.  Are there certain commands that can be used in CLI on the 5520 cluster that will clear any caching issues?
0
Comment
Question by:mikhall
1 Comment
 

Accepted Solution

by:
Cyberwrath earned 500 total points
ID: 37782332
You can clear an individual problematic tunnel as follows

ASA2-5520(config)# clear crypto isakmp sa ?

exec mode commands/options:
  Hostname or A.B.C.D     IP address
  Hostname or X:X:X:X::X  IPv6 address
  <cr>

Much cleaner than rebooting the cluster.
0

Featured Post

What is SQL Server and how does it work?

The purpose of this paper is to provide you background on SQL Server. It’s your self-study guide for learning fundamentals. It includes both the history of SQL and its technical basics. Concepts and definitions will form the solid foundation of your future DBA expertise.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This article will cover setting up redundant ISPs for outbound connectivity on an ASA 5510 (although the same should work on the 5520s and up as well).  It’s important to note that this covers outbound connectivity only.  The ASA does not have built…
Quality of Service (QoS) options are nearly endless when it comes to networks today. This article is merely one example of how it can be handled in a hub-n-spoke design using a 3-tier configuration.
When you create an app prototype with Adobe XD, you can insert system screens -- sharing or Control Center, for example -- with just a few clicks. This video shows you how. You can take the full course on Experts Exchange at http://bit.ly/XDcourse.
Concerto provides fully managed cloud services and the expertise to provide an easy and reliable route to the cloud. Our best-in-class solutions help you address the toughest IT challenges, find new efficiencies and deliver the best application expe…

947 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

20 Experts available now in Live!

Get 1:1 Help Now