Click here to get back home

Server 2003 IPSec VPN

 HomeNewsGroups | Search | About
 microsoft.public.windows.server.security    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content
Subject Author Date
Server 2003 IPSec VPN evt 10-15-2005
Get Chitika Premium
Posted by evt on October 15, 2005, 9:42 am
Please log in for more thread options
Hi all,
I have successfully set up an IPSec VPN between a Windows 2003 server
and a two remote Cisco PIX firewalls. However, I have a problem where
the session disconnects every 5 minutes and *appears* to rekey. I've
looked at the IP Security Monitor statistics and it doesn't show any
Rekeys, but it does show "Key Additions" and "Key Deletions"
incrementing every five minutes. I do not have any rekey parameter
settings configured on the Windows server that I can tell. Is there a
key deletion setting misconfigured somewhere?

Thanks in advance,
evt


Posted by Steven L Umbach on October 15, 2005, 11:06 am
Please log in for more thread options
I take it you used a ipsec tunneling policy and did not use Remote Access
configuration. If that is the case and you used default settings for ipsec
key lifetimes on the Windows 2003 Server it would not reset that often and I
believe the default for main mode is 480 minutes though even then it should
not cause a disconnect but another negotiation. By default auditing of logon
events should be enabled on the Windows 2003 Server and it may help to look
in the security log for IKE related events. I did a Google search and I
found the first link below that may help even though it is for Windows 2000.
The second link is a general search of the MS site. --- Steve

http://www.cisco.com/en/US/tech/tk583/tk372/technologies_configuration_example09186a00800b12b5.shtml
http://search.microsoft.com/search/results.aspx?view=en-us&st=a&na=81&qu=+windows+2003+ipsec+cisco&qp=&qa=&qn=&c=10&s=0

> Hi all,
> I have successfully set up an IPSec VPN between a Windows 2003 server and
> a two remote Cisco PIX firewalls. However, I have a problem where the
> session disconnects every 5 minutes and *appears* to rekey. I've looked
> at the IP Security Monitor statistics and it doesn't show any Rekeys, but
> it does show "Key Additions" and "Key Deletions" incrementing every five
> minutes. I do not have any rekey parameter settings configured on the
> Windows server that I can tell. Is there a key deletion setting
> misconfigured somewhere?
>
> Thanks in advance,
> evt




Similar ThreadsPosted
How does domain isolation with Windows 2003 IPsec happen? October 29, 2008, 1:06 am
IPSec tunnels win2003 server January 4, 2006, 8:01 am
Windows server 2003 security. How to protect against 100's of invalid logons to the server?? August 12, 2005, 5:29 pm
SP-1 to a Windows 2003 Server running SQL Server 2000 with out SP- July 5, 2005, 5:20 pm
SSH on 2003 Server December 26, 2005, 1:31 pm
Server 2003 SP2 March 15, 2007, 7:50 am
Fax 2003 Server July 20, 2007, 12:38 pm
VPN and Windows 2003 Server May 31, 2005, 11:58 pm
L2TP server behind NAT on 2003 September 19, 2005, 12:25 pm
2003 server with PCanywhere i September 25, 2005, 4:12 pm

Our other projects:

Art Dolls, Fairies and Mermaids - Sunnyfaces.net

Roy's Linux, Programming and Search Engines messages

1-Script XML SitemapXML Sitemap