- Products
- Learn
- Local User Groups
- Partners
-
More
Celebrate the New Year
With CheckMates!
Value of Security
Vendor Self-Awareness
Join Us for CPX 360
23-24 February 2021
Important certificate update to CloudGuard Controller, CME,
and Azure HA Security Gateways
How to Remediate Endpoint & VPN
Issues (in versions E81.10 or earlier)
Mobile Security
Buyer's Guide Out Now
Important! R80 and R80.10
End Of Support around the corner (May 2021)
Hi,Engineers, I'd like to ask you a question
After the VPN client dials in for a period of time, the connection is often interrupted about two hours later.What caused the connection to fail
If your VPN goes down every two (or several, depending on IKE time-outs) hours, check that you can still reach CRL distribution point when VPN is up.
The classic case is:
1. VPN is down. IKE is established with certificates based auth. CLR is available, tunnel goes up.
2. Once keys are expired, GWs try to re-negotiate. Auth fails because CRL is no longer available. Tunnel goes down.
3. GWs retry IKE, once tunnel is down, CRL becomes reachable again, tunnel goes up.
What is the timeout configured in the global properties ?
It is the same as the screenshot you sent
Are there any other screening methods?
About CheckMates
Learn Check Point
Advanced Learning
WELCOME TO THE FUTURE OF CYBER SECURITY