<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: VPN Client disconnects after one hour in SASE and Remote Access</title>
    <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-disconnects-after-one-hour/m-p/82217#M12321</link>
    <description>&lt;P&gt;I had the same problem on R80.10 and then R80.30 gateway. It was solved today with TAC (SR &lt;SPAN&gt;6-0001915434&lt;/SPAN&gt;).&lt;/P&gt;&lt;P&gt;Needs to change the parameter on file $FWDIR/boot/modules/fwkern.conf:&lt;BR /&gt;&lt;BR /&gt;natt_probe_do_in_kernel=0&lt;/P&gt;</description>
    <pubDate>Fri, 17 Apr 2020 09:33:58 GMT</pubDate>
    <dc:creator>Volodymyr</dc:creator>
    <dc:date>2020-04-17T09:33:58Z</dc:date>
    <item>
      <title>VPN Client disconnects after one hour</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-disconnects-after-one-hour/m-p/52093#M12312</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;I ran into a problem with remote access VPN.&lt;/P&gt;&lt;P&gt;The connection can be established successfully and the ressources are available, but exactly after one hour the client disconnects with the error message "Failed to renew encryption keys".&lt;/P&gt;&lt;P&gt;In ike.elg it looks like phase 2 is failing, but everything is fine at the initial connection.&lt;/P&gt;&lt;P&gt;I checked and changed several lease times and renegotiation times, the client still disconnects after one hour.&lt;/P&gt;&lt;P&gt;I already have a service request open since three weeks now with no solution.&lt;/P&gt;&lt;P&gt;Did anyone experience this before?&lt;/P&gt;</description>
      <pubDate>Mon, 29 Apr 2019 06:35:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-disconnects-after-one-hour/m-p/52093#M12312</guid>
      <dc:creator>Daniel_Peschke1</dc:creator>
      <dc:date>2019-04-29T06:35:24Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Client disconnects after one hour</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-disconnects-after-one-hour/m-p/52102#M12313</link>
      <description>&lt;P&gt;This is a classic case. Please make sure CRL on the Management is available through VPN &lt;EM&gt;or&lt;/EM&gt; is not encrypted.&lt;/P&gt;</description>
      <pubDate>Mon, 29 Apr 2019 07:00:39 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-disconnects-after-one-hour/m-p/52102#M12313</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2019-04-29T07:00:39Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Client disconnects after one hour</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-disconnects-after-one-hour/m-p/52120#M12314</link>
      <description>&lt;P&gt;How can I check these parameters? (I am kinda new to Check Point)&lt;/P&gt;</description>
      <pubDate>Mon, 29 Apr 2019 10:14:33 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-disconnects-after-one-hour/m-p/52120#M12314</guid>
      <dc:creator>Daniel_Peschke1</dc:creator>
      <dc:date>2019-04-29T10:14:33Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Client disconnects after one hour</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-disconnects-after-one-hour/m-p/52130#M12315</link>
      <description>How do I check those parameters? (I'm kinda new to Check Point)</description>
      <pubDate>Mon, 29 Apr 2019 12:00:15 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-disconnects-after-one-hour/m-p/52130#M12315</guid>
      <dc:creator>Daniel_Peschke1</dc:creator>
      <dc:date>2019-04-29T12:00:15Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Client disconnects after one hour</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-disconnects-after-one-hour/m-p/52160#M12316</link>
      <description>&lt;P&gt;Are you using certificates for authentication?&lt;/P&gt;</description>
      <pubDate>Mon, 29 Apr 2019 16:16:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-disconnects-after-one-hour/m-p/52160#M12316</guid>
      <dc:creator>Martin_Raska</dc:creator>
      <dc:date>2019-04-29T16:16:10Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Client disconnects after one hour</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-disconnects-after-one-hour/m-p/52229#M12317</link>
      <description>&lt;P&gt;There are no certificates for the clients, but a SSL certificate for the gateway. So the clients connect to the domain-name and not to the IP of the gateway. But I also tried to connect to the IP and got the same error.&lt;/P&gt;&lt;P&gt;For authentication I am using Identity Awareness with AD-Query and local configured users. The error occurs on both of them.&lt;/P&gt;&lt;P&gt;More information to the gateway - it's a stand-alone solution on R80.20 and Endpoint Security E80.92.&lt;/P&gt;</description>
      <pubDate>Tue, 30 Apr 2019 08:08:40 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-disconnects-after-one-hour/m-p/52229#M12317</guid>
      <dc:creator>Daniel_Peschke1</dc:creator>
      <dc:date>2019-04-30T08:08:40Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Client disconnects after one hour</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-disconnects-after-one-hour/m-p/72617#M12318</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Did you find a solution for this?&lt;/P&gt;</description>
      <pubDate>Sat, 18 Jan 2020 20:04:25 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-disconnects-after-one-hour/m-p/72617#M12318</guid>
      <dc:creator>yigiterol</dc:creator>
      <dc:date>2020-01-18T20:04:25Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Client disconnects after one hour</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-disconnects-after-one-hour/m-p/79127#M12319</link>
      <description>&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/13072"&gt;@Daniel_Peschke1&lt;/a&gt;. Did you find a solution fot this issue? i also have the same issue.</description>
      <pubDate>Sat, 21 Mar 2020 13:38:30 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-disconnects-after-one-hour/m-p/79127#M12319</guid>
      <dc:creator>Jeff_Gao</dc:creator>
      <dc:date>2020-03-21T13:38:30Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Client disconnects after one hour</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-disconnects-after-one-hour/m-p/79129#M12320</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;It took me some days to notice, but we had a misconfigured NAT rule. A static NAT from gateway IP to a server in the DMZ.&lt;/P&gt;</description>
      <pubDate>Sat, 21 Mar 2020 14:09:56 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-disconnects-after-one-hour/m-p/79129#M12320</guid>
      <dc:creator>Daniel_Peschke1</dc:creator>
      <dc:date>2020-03-21T14:09:56Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Client disconnects after one hour</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-disconnects-after-one-hour/m-p/82217#M12321</link>
      <description>&lt;P&gt;I had the same problem on R80.10 and then R80.30 gateway. It was solved today with TAC (SR &lt;SPAN&gt;6-0001915434&lt;/SPAN&gt;).&lt;/P&gt;&lt;P&gt;Needs to change the parameter on file $FWDIR/boot/modules/fwkern.conf:&lt;BR /&gt;&lt;BR /&gt;natt_probe_do_in_kernel=0&lt;/P&gt;</description>
      <pubDate>Fri, 17 Apr 2020 09:33:58 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-disconnects-after-one-hour/m-p/82217#M12321</guid>
      <dc:creator>Volodymyr</dc:creator>
      <dc:date>2020-04-17T09:33:58Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Client disconnects after one hour</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-disconnects-after-one-hour/m-p/100350#M12322</link>
      <description>&lt;P&gt;Did you get any explanation on what this kernel attribut does? We're having the same issue with rekey started a few days ago (despite that nothing has changed regarding policy or fw-version).&amp;nbsp;&lt;/P&gt;&lt;P&gt;We're using 80.30 take 217.&lt;/P&gt;&lt;P&gt;Yesterday I rebooted the gateways and after that I executed&amp;nbsp;fw ctl set int natt_probe_do_in_kernel 0 on one of the gateways (the active one).&lt;BR /&gt;Since then I don't have the issue with rekey but if it was the reboot or the kernel param update which solved remains to find out.&lt;/P&gt;</description>
      <pubDate>Wed, 28 Oct 2020 09:01:58 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-disconnects-after-one-hour/m-p/100350#M12322</guid>
      <dc:creator>Per_Opel</dc:creator>
      <dc:date>2020-10-28T09:01:58Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Client disconnects after one hour</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-disconnects-after-one-hour/m-p/188688#M12323</link>
      <description>&lt;P&gt;I am also facing the same kind of issue and also raised the ticket with TAC but as of now no Cath on the issue, But they suggested the same command and we did that, but the issue remains the same.&lt;/P&gt;&lt;P&gt;We are in the Maestro environment R81.10 and my GW is in Active Active, If I execute the below commands do I need a reboot of GW?&lt;/P&gt;&lt;P&gt;&amp;nbsp;Thanks in advance&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 05 Aug 2023 09:56:39 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-disconnects-after-one-hour/m-p/188688#M12323</guid>
      <dc:creator>PradeepSonawne</dc:creator>
      <dc:date>2023-08-05T09:56:39Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Client disconnects after one hour</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-disconnects-after-one-hour/m-p/188757#M12324</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;if you`re talking about&amp;nbsp;&lt;STRONG&gt;natt_probe_do_in_kernel=0,&amp;nbsp;&lt;/STRONG&gt;note it is not command, it is string in&amp;nbsp;&lt;SPAN&gt;&lt;STRONG&gt;$FWDIR/boot/modules/fwkern.conf &lt;/STRONG&gt;file.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;And sure, any changes of&amp;nbsp;&lt;STRONG&gt;$FWDIR/boot/modules/fwkern.conf &lt;/STRONG&gt;file will be applied after reboot of GW.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 07 Aug 2023 09:06:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-disconnects-after-one-hour/m-p/188757#M12324</guid>
      <dc:creator>Volodymyr</dc:creator>
      <dc:date>2023-08-07T09:06:52Z</dc:date>
    </item>
    <item>
      <title>Re: VPN Client disconnects after one hour</title>
      <link>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-disconnects-after-one-hour/m-p/210446#M12325</link>
      <description>&lt;P&gt;we using p12 certificate authentication&lt;/P&gt;</description>
      <pubDate>Thu, 04 Apr 2024 13:09:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/SASE-and-Remote-Access/VPN-Client-disconnects-after-one-hour/m-p/210446#M12325</guid>
      <dc:creator>Srihari_E</dc:creator>
      <dc:date>2024-04-04T13:09:41Z</dc:date>
    </item>
  </channel>
</rss>

