Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations TouchToneTommy on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Killing a VPN Session

Status
Not open for further replies.

TheStressFactor

IS-IT--Management
Sep 24, 2002
229
US
Is there a way to kill someone's vpn session from a command prompt on the pix?
 
I have not used it, but there is a "vpnclient disconnect" command available on the PIX. Here's a list of available commands [bigsmile](
vpnclient
Configures Easy VPN Remote.

vpnclient vpngroup group_name password preshared_key

vpnclient username xauth_username password xauth_password

vpnclient server ip_primary [ip_secondary_1 ip_secondary_2 ... ip_secondary_10]

vpnclient mac-exempt mac_addr_1 mac_mask_1 [mac_addr_2 mac_mask_2]

vpnclient mode client-mode | network-extension-mode

vpnclient management {[tunnel {ip_addr_1 ip_mask_1} [{ip_addr_2 ip_mask_1}...]] | [clear]}

no vpnclient management

[no] vpnclient connect

vpnclient disconnect

[no] vpnclient nem-st-autoconnect

vpnclient enable

no vpnclient {server | mode | vpngroup | username | mac-exempt | management | enable}

clear vpnclient

show vpnclient [detail]
 
I use "clear crypto isakmp sa", basically will clear the previous connection vpn.

United, We Stand
 
I think I stated my question kind of crappy..I apologize. This is what I am looking to do:

If I do a sh uauth on the pix it displays a list of the current users connected to my network via vpn-here is an example:

marinofw1# sh uauth
Current Most Seen
Authenticated Users 6 9
Authen In Progress 0 1
ipsec user 'joeschmo' at 10.1.1.3, authenticated
ipsec user 'beebop' at 10.1.1.1, authenticated
ipsec user 'yanni' at 10.1.2.5, authenticated
vpdn user 'jomama' at 10.1.7.1, authenticated

Is there a command to kill just ONE of these connections.
I think with the commands given in the previous posts would kill all vpn connections.

Any ideas or suggestions would be greatly appreciated.

 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top