Keep up the tunnel

I have a router with a static IP address 881, acting as a router at Headquarters.  I have then several remote site (also 881 s) routers that have dynamic IP addresses.  I configured IPsec tunnels, which are made from the dynamic IP sites to the HQ router successfully.  I'm trying to find a way to keep the tunnel going down due to inactivity.  It does not always have to be a lot of back and forth, traffic, so left to itself, the tunnel finally breaks down.  The problem with this is that only the side dynamic IP can connect again.  I need to prevent that from happening, so that the router HQ can send traffic in the tunnel, even if no traffic not elapsed during a prolonged period of time.

I tried "crypto isakmp keepalive 30 10 periodicals", but it doesn't seem to do anything.

Any help would be appreciated.

Thank you.

DPD go on IKE ITS not IPsec Security Association.

You can install a simple SLA probes on distance 880 s to ping tunnel from the local LAN (s) of remote addresses behind HQ 881 interfaces. This should maintain the tunnels. An ICMP packet every 5 minutes should cuause not extra pressure on the boxes.

Tags: Cisco Security

Similar Questions

  • I keep getting the "this connection is not approved" in all the sites when I use Firefox on windows laptop 36.0.1 8. How can I overcome this.

    I keep getting the "this connection is not approved" in all the sites when I use Firefox on windows laptop 36.0.1 8. How can I overcome this.

    Hi vijaysampath, please make sure first that the date, time, and time zone are set correctly on your system. If this does not solve the problem (or it is already set correctly), a possible solution depends on different factors:

    • What is the error code indicated under Technical Details on the error page?

    in case the error code is equal to sec_error_unknown_issuer, please try to add an exception on the bottom of the error page to verify the certificate, as shown on the attached screenshot:

    • What information about the issuer of the certificate contain?

    Please take these two pieces of information. Thank you!

  • Keep losing the customization of controls after the new start or updates [firefox 24/25/26] 'customize navigation as bookmarks, back buttons and reload '.

    Since the 24 FF and also in the 25 & 26 it keeps losing the customization of controls after new impetus or updates.

    I always do this: 'Customizing the navigation like back, home, bookmarks, & reload buttons' - http://mzl.la/LqHj2n.

    When I updated from 23-24/25/26 or have a crash FF in one of these versions, the customization is default return. I do not have to repeat this every time!

    What is your operating system?

    You can check the problems caused by a corrupt localstore.rdf file.

  • My iPhone 5 c keeps losing the pairing with my brand new Nissan Juke

    My iPhone 5 c keeps losing the pairing with my new Nissan Juke. I tried to delete if the car and the phone and repair. He works for a few days then it happens with defective pairing on the car screen. I then go through the whole process again to make it work. Can anyone help?

    Howdy Kevin,

    Welcome to Apple Support communities.

    As I understand it, there is a problem with your iPhone 5 c does not connect to your car radio after using it for a few days. The article below the link provides a lot of information and some general troubleshooting tips that may be able to help you solve this problem.

    Get help to connect your iPhone, iPad or iPod touch with your car radio - Apple Support

    If you use Bluetooth

    1. Consult the user manual of your car stereo to get the procedure to a Bluetooth device.
    2. On your iOS device, drag up to open Control Center, then press ontwice to turn on Bluetooth and turn it back on.
    3. Restart your iOS device.
    4. On your iOS device, Cancel the twinning of your car radio. On the screen of your car désapparier your iOS device and any other device. Restart your car and your iOS device, then pair and connect again.
    5. Update your iOS device.
    6. Install the updates to the firmware of your car radio.
    7. If you still not connect, contact Apple technical support.

    So long.

  • Firefox keeps forgetting the Zoom value by page...

    Hello!

    Surfing on the archives of Dilbert cartoons, I Zoom in the caricature of Sunday otherwise it's too small. But Firefox 4 keeps forgetting the zoom setting.

    Whenever I have click on the comic strip following or even refresh the setting page is back to the standard. This behavior is similar on all websites, for example google.

    Any suggestion? Thanks in advance! wohlgetan

    Make sure that you do not run Firefox in permanent private browsing mode.

    • https://support.Mozilla.com/kb/private+browsing
    • You enter private browsing mode, if you select: Tools > Options > privacy > History: Firefox will be: "don't forget the story ever.
    • To view the history settings and cookies, choose: Tools > Options > privacy, choose the setting Firefox will: use the custom settings for the story of
    • Uncheck the box: [] "Permanent private browsing Mode.
  • Want to m6 - 1158ca: Intel Centrino Wireless N-2230 keeps abandon the connection unless a specific driver version is used.

    Regarding N-2230 INTEL CENTRINO WIRELESS CARD ON YEAR WANT M6 - 1158CA

    OK, my computer was sent to the shop for the following reason.

    Wireless guard fall on me unless I use the driver coming from a clean factory HP restore.

    The driver in question works is: INTEL 15.10.3.2 - published on 08-22-2013

    Driver INTEL 15.5 version works as well.

    All other versions, including the latest intel pro wireless drivers, I have connectivity problems and they are pretty bad. I have to keep resetting the wireless adapter every 5 minutes or sooner!

    Makes me think of what follows. Is there a problem with the card, OR are these drivers specially configured to work with this card.

    It is not supposed that the drivers of the latest and should not work - unless the card begins to intermittently fail. I say this because the WLAN MODULE check past in BIOS diagnostics. But just becaused it HAPPENED, doesn't mean it isn't bginning to fail. I doubt that the diagnostic program looks at every single circuit on the map to see if it works or not.

    So, I put the question you guys. Because, if the technicians decide to change the map and put in a different INTEL CENTRINO WIRELESS N-2230, I'll have the same problems.

    And you might say: so what's the problem? Just use drivers that work!

    And I say good idea BUT these are drivers of Windows 8 and I want to use WINDOWS 10 and the pilots Win 8 will not / should not work. And which provides updates of Windows drivers do not work. And HP does not Windows 10 drivers for this model of computer. They rely on Windows update.

    So, from being as tech PC since the beginning of the 1990s, I think I know what I'm talking about.

    But, no man is an island of information on their own, so I put the question you guys and see what you're saying!

    Thank you.

    I think that I found a solution to my problem.

    First thing to note is that I am running on battery power.

    The solution seems to be the advanced power setting options for the adapter wireless performance MAXIMUM average energy saving.

    Once I did, I had connectivity again!

    Now let's see if this solution works for Windows 10.

    This solution applies to Intel 15.18.0.1 driver version

  • How to make transparent cluster keeping only the elements inside the visible cluster?

    Hello

    Can anyone suggest me how to make transparent cluster keeping only the elements inside the cluster visible in the front panel.

    Thanks in advance,

    Vinciane

    As I said, use the space bar for what is paint. This works. Trust me.

    PS You cannot link to pictures stored on your hard drive. We don't see them. You must add them as attachments and then submit the post they get uploaded to the servers of NOR.

  • After that I closed the lid on my laptop, when I reopen it, I have to keep moving the lid until I can get a picture. What could be the problem and how to fix?

    After that I closed the lid on my laptop, when I reopen it, I have to keep moving the lid until I can get a picture.  What could be the problem and how to fix?

    Hello

    Looks like a loose connector or a short circuit in the video cable. Check with a real
    store computer (one that works on computers cell phones internal ASUStek) or ASUStek
    Support, their documentation and online in their forums.

    Not a maintainable question by the user.

    ASUStek support
    http://support.ASUS.com/

    ASUStek Forums
    http://VIP.ASUS.com/forum/default.aspx?SLanguage=en-us

    ASUStek drivers
    http://support.ASUS.com/download/download.aspx?SLanguage=en-us

    I hope this helps.

    Rob Brown - Microsoft MVP<- profile="" -="" windows="" expert="" -="" consumer="" :="" bicycle=""><- mark="" twain="" said="" it="">

  • I keep getting the message "there are no lightscribe devices in this system.

    I keep getting the message "there are no lightscribe devices in this system.

    I tried to open the recommended site for updates, but I get an error messasage.  Can you help me?

    Follow article

    http://h20000.www2.HP.com/bizsupport/TechSupport/document.jsp?lang=en&cc=us&ObjectID=c01900020&JumpID=reg_R1002_USEN

  • Windows Vista PC keeps filling the disk space

    Windows Vista PC keeps filling the disk space, but programs like Treesize and Windows Explorer are not all of the additional files.

    The disc has about 45 GB of files, but the 220 GB drive is almost full. I suspect that a program will create orphaned files. CHKDSK is currently suspended from the second pass. Will try to run until the end of the day to the next.

    I turned on the hidden files and protected, it is not that I can't see the files. What can account for 150 + GB of invisible disk space?  Indexing of Windows seems to be active, although the C drive was marked to not be indexed.

    I know that a temporary internet file (content.ie5) is doubly hidden. Who had only 50 MB in it, so it's not the culprit. Any other hidden super-fichiers that everyone knows.

    Running Trend Micro PC-Cillin. The history of this creation of orphaned files?

    All the tools that look right at the MFT to see what is using the disk space and the avoidance of the directory tree?

    This isn't a matter of a few directories being wholesale, or clean old files. The space used is not anywhere to be found.

    Already run cleaning ccleaner and disk. Empty temporary files, Recycle Bin, etc. Only restore point. Registry clean with ccleaner.

    Never did anything on computer that could use 150 GB of space.

    If you look at just the computer, you can see disappearing disk space (maybe 1 GB an hour).

    Always seems to happen if you disconnect from the internet.

    Friend PC, so I did not have immediate access to it.

    Whence the free number 'space '? I'm just that an orphan file will not be displayed in a search in directories or with Treesize, but will use up to 'free space '?

    No sign of a virus.

    Hello

    Were there any changes made on the computer before the show?

    I suggest to refer to the article and try to defragment the hard disk:

    Improve performance by defragmenting your hard drive

    I understand that you have already scanned the hard drive with anti-virus software, although I suggest you try to run an online scan and check if it helps:

    http://www.Microsoft.com/security/scanner/en-us/default.aspx

    Note: the Microsoft Safety Scanner expires 10 days after being downloaded. To restart a scan with the latest definitions of anti-malware, download and run the Microsoft Safety Scanner again. The data files that are infected must be cleaned only by removing the file completely, which means that there is a risk of data loss.

    Let us know if it helps.

  • Laptop keeps disconnecting the connection but not others

    I have two laptop computers Toshiba Satellite A300D and A500-13F and a new Linksys WRT120N router. A300D has an Atheros AR9281 wireless network adapter, while A500 has Intel(r) WiFi Link 5100 AGN, and both have Vista 32. It's the A500 which keeps disconnect the connection, it's as if it keeps restarting from the router. It will do this every few minutes and I can't do anything normally on the internet.

    I tried to do something but nothing works. Updating the drivers for the adapter on the A500 does not resolve the issue, although A300D works normally without updates, so there must be something wrong with the adapter on the A500. I also have sellected maximum performance in Power Options > change plan settings > change advanced power settings > wireless card settings, because I read somewhere that energy-efficient settings can interfere with the adapter. I thought that this solution worked until he started to lose and by restoring the link again. Everyone guess what else could be wrong? I generally know how to fix things, but the wifi is a new thing for me and don't know much.

    Yes, in this scenario, this could be the problem with the adapter. Then I suggest that you contact the hardware vendor.

  • Need help with my Mail window. I can't export my message to the PST format. I keep getting the message error "an error occurred during initialization of MAPI".

    Hello

    Need help with my Mail window. I can't export my message to the PST format. I keep getting the message error "an error occurred during initialization of MAPI". Y at - it solution or another method?

    Hi ErikLee,

    Do you have MS Outlook installed on your computer?

    Windows mail import and export opportunities are limited to an Outlook .pst file or an Exchange Server mailbox. They are available only if MS Outlook is installed.
    If MS Outlook is not installed and you start an import or export action, the necessary support files are not present for Windows mail complete the operation. Then I suggest you to install Outlook temporarily and see if the problem is resolved.

    Follow the instructions below and check if the problem is resolved.

    1. reboot your computer, and then start Windows Mail.
    2. on the Tools menu, click Options.
    3. in the connection tab, click on edit to open the Internet Properties dialog box.
    4. in the tab programs, click on an application other than Windows mail e-mail in the e-mail list. Click on apply and then click OK.
    5. click OK again to close the Options dialog box.
    6. exit Windows mail and restart Windows mail.

    If this does not work, I suggest you upgrade to Windows Live Mail to import or export messages that may help you resolve the issue.

    To download Windows Live Mail, visit the following Microsoft Web site:
    http://get.live.com/wlmail/overview

    For more information about Windows Live Mail, see the Microsoft Web site at the following address:
    http://windowshelp.Microsoft.com/Windows/en-us/help/4b30d3d6-abe2-46d1-a5fd-4a1ba786a1381033.mspx

    Check whether the problem is resolved.

    Please post back and let us know if it helped to solve your problem.

    Kind regards
    KarthiK TP

  • I had my computer checked by professionals and they added Malwarebytes, my MSE keeps turning the real-time protection off the coast of almost every day and take 2 or more going to turn around.

    I had my computer checked by professionals and they added Malwarebytes, my MSE keeps turning the real-time protection off the coast of almost every day and take 2 or more going to turn around.

    original title: MICROSOFT SECURITY ESSENTIALS AND MALWAREBYTES ARE OK, YES or NO

    I had my computer checked by professionals and they added Malwarebytes, my MSE keeps turning the real-time protection off the coast of almost every day and take 2 or more going to turn around.

    There are 2 types of Malewarebytes:

    A free edition
    An edition of Malewarebytes Pro you have to buy.

    Ask thos 'pro' that is they added to your computer.
    Let them also disable the protection in real time of the Malwarebytes.

    I have MSE as my time protection rel and Malwarebytes (free version) as my program "we demand."
    Ways to request that is not run until I turn it on, and it stops when finished scanning.

  • I have a few updates that will fail and she keeps offers the update of these points - I noticed that he often has to do with something related 64-bit.

    I updated my newly installed Windows 7 Pro (64) and many update took place, BUT...

    I have a few updates that will fail and she keeps offers the update of these points - I noticed that he often has to do with something related 64-bit.

    How document and fix this?

    Welcome!

    See if using the auditor system in Windows files can repair the files of Windows updates:

    https://support.Microsoft.com/en-us/KB/929833

    Similarly, you can reset Windows updates by following this here:

    https://support.Microsoft.com/en-us/KB/971058

  • allow icmpv6 in ipv4-access list in the tunnel

    Hello

    I have a little problem with an access list ipv4 blocking my ipv6 tunnel.

    My tunnel works and is as follows:

    interface Tunnel0

    no ip address

    IPv6 address

    enable IPv6

    source of tunnel

    ipv6ip tunnel mode

    tunnel destination

    So when I apply the below, access list to the WAN interface on the sense IN, IPV6 stops working (everything works on IPV4 when the access list is applied). I mean, I cannot ping ipv6.google.com or ipv6.google.coms IP. I can still ping the IP ipv6 remote tunnel ().

    Access list that I apply is the following:

    allow tcp any a Workbench

    allowed UDP any eq field all

    allowed any EQ 67 udp no matter what eq 68

    allowed UDP any eq 123 everything

    allowed UDP any eq 3740 everything

    allowed UDP any eq 41 everything

    allowed UDP any eq 5072 everything

    allow icmp a whole

    deny ip any any newspaper

    Here are the requirements to the supplier of tunnel, and one of the entries is ICMPv6. Is it possible to allow icmp v6 on a Cisco access list?

    TCP 3874 TIC.sixxs.net IPv4 ICT (Information Tunnel & Control Protocol) Used to retrieve the information of tunnel (for instance AICCU) Uses the TCP protocol and should work without problems
    UDP 3740 PoP IPv4 Heartbeat Protocol Used for signalling where is the endpoint current IPv4 of the tunnel and he's alive the user only to pop out
    Protocol 41 PoP IPv4 IPv6 over IPv4 (6 in 4 tunnel) Used for tunneling IPv6 over IPv4 (static tunnels + heartbeat) We have to appoint the internal host as the DMZ host that leaves usually passes the NAT
    UDP 5072 PoP IPv4 AYIYA (anything in anything) Used for tunneling IPv6 over IPv4 (AYIYA tunnels) Must cross most NAT and even firewalls without any problem
    ICMPv6 echo response. Tunnel endpoints IPv6 Internet Control Message Protocol for IPv6 Used to test if a tunnel is alive in scathing tunnel endpoint (tunnel: 2) on the side PoP of the tunnel (tunnel: 1) on the tunnel No, because it is happening inside the tunnel

    I missed something?

    sidequestion: I added the "deny ip any any newspaper" in the access list, but it adds no registration entry in the log (show log). I'm sure it hits because when I run "display lists access": 110 deny ip any any newspaper (2210 matches).

    Hope someone can help me.

    Hello

    In the ACL above you are atleast specifying source and destination UDP and 41 SOURCE ports

    If you specify IPv6 over an IPv4 ACL I guess that the format would be to "allow 41 a whole" for example.

    Although I have barely touched IPv6 myself yet. Wouldn't it be possible to configure ACL Ipv4 and IPv6 ACL and attach them to the same interface?

    But looking at my own router it does not support these commands so that other devices to make. Maybe something related model/software I guess.

    -Jouni

Maybe you are looking for

  • How can I manage "all messages" - he'll be back in 3 years and I want the old deleted emails!

    I try to keep my account and cannot didn't know that the "all messages" had my emails 3 years back. How can I clear this box only have the emails say 6 months? I'll then from now on... All of the mail is not really useful for me - or is the important

  • Norton privacy setting not saved

    My Firefox 8.0 privacy settings do not work. I use Norton Internet Security V19.2.0.10 2012. I tried to remove pref.js without success, I also put Norton to allow Firefox in the control of the program. Always without success.

  • IdeaCentre AIO 700 - BIOS update error 0162

    Hello I have a Lenovo ideacentre AIO 700. I tried to update the BIOS of O1KTT30AUS to the most recent available on the pilot product page and the software that is listed as O1KKT35A. Now when I start up I get an error message from American Megatrends

  • missing gbmioqulid.dll

    My computer keeps telling me that it is the missing dll and I can't find what he posted on the web where how can I fix the dll.gbmioqulid.dll plz help my system hangs with her.

  • Adobe services [moderate]

    You have just called me - this issue is still not resolved - please call