Why the site-to-site VPN tunnel will disconnect hourly? How to reslove it?

Zyxel_Jeff
Posts: 1,311
Zyxel Employee





Scenario :
Users may encounter a situation in the site-to-site VPN tunnel that will disconnect hourly. This article will guide you on how to identify the possible reasons and resolve this problem.
Answer :
The possible reason for the site-to-site VPN disconnecting hourly is that the Phase 2 SA Lifetime is set to 3600 seconds. When it reaches 3600 seconds, the firewall initiates a re-key process, causing the site-to-site VPN to disconnect.
The acceptable solution is to extend the SA Lifetime, as shown below. The SA Lifetime is extended to the default value of 28800 seconds (which equals 8 hours).
Tagged:
0
Categories
- All Categories
- 415 Beta Program
- 2.5K Nebula
- 156 Nebula Ideas
- 104 Nebula Status and Incidents
- 5.9K Security
- 314 USG FLEX H Series
- 285 Security Ideas
- 1.5K Switch
- 78 Switch Ideas
- 1.1K Wireless
- 42 Wireless Ideas
- 6.6K Consumer Product
- 256 Service & License
- 398 News and Release
- 85 Security Advisories
- 31 Education Center
- 10 [Campaign] Zyxel Network Detective
- 3.7K FAQ
- 34 Documents
- 34 Nebula Monthly Express
- 87 About Community
- 78 Security Highlight