Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations strongm on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Pix 501 Lossing Connection to One site.

Status
Not open for further replies.

RickyTicky

Technical User
Jan 19, 2003
9
GB
Guys,

I have a VPN Setup which allows uses to access 2 sites, Lets say SiteA + Site B. Remote users are using 501's which connect to a 515 at head office. ( Users are connected to the net via ADSL ). The problem I am getting is that users are loosing their connection to Site B which happens to be where there email is located. Even though connection is lost, I can still ping site A and access resources on that part of the network, which would determine the VPN tunnel is still up. I have got NTL to check the configs over, and both configs on 501's and 515's are spot on. The only way to bring the connection back online is by restarting the 501. Has anyone come accross simular problems of suddenly being disconnected from part of your network?? Or if anyone happens to know what could be the cause of this, there's a pint in it for you.

Many Thanks

Rikster
 
HI.

Some ideas that might help:

* Use syslog messages and debug commands, maybe you'll find something interesting.

* Configure a host in Site B to ping over the tunnel every x minutes, and see if it changes anything.
You can simply scheudle a batch file for that, or use a tool like the KIT utility from my web site.

What is the OS version of each device?
Can you post the configs? (see the FAQ of this forum for masking sensitive info).

Bye


Yizhar Hurwitz
 

Both 515 and 501's are all on O/S 6.3.1. The latest to my knowledge. Configs are not the issue here, as I have already logged a TACS call with Cisco, they have checked the config. The interesting thing, is I configured a 806 router to VPN into the network and got exactly the same problem.

The trouble is I have tried the ping tests, established when the connection is broken, and even setup a syslog server which is set to debug level 7 (everything). Sending on the relevant failure info to cisco, but still am no closer to resolving this issue.

Any other tips would be appreciated.

Thanks

 
Hello, I have a same problem between a PIX 501 and VPN3000, I want to Know if somebody found the solution for this.

Thank You

ACCOMP
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top