IOS IPsec bugs

Tina Bird tbird at PRECISION-GUESSWORK.COM
Mon May 22 19:03:21 EDT 2000


Hi all --

I've been configured a bunch of Cisco 3662 routers to do
IPsec, and we've discovered that IOS version 12.0(7)T, which
shipped with our routers, has an IPsec bug.

When the SA expires at 3600 seconds, the IOS fails to
negotiate a new security association.  The connection will
set itself back up if you manually clear the security
associations and keys, but not otherwise.

We were advised to upgrade to 12.1.1.1(T) which seems to be
more stable.  Has anyone else seen this behavior?

thanks -- Tina

VPN is sponsored by SecurityFocus.COM




More information about the VPN mailing list