Hey guys,
Im trying to figure out if there is a command that anyone knows that would permently delete ike and ipsec SAs for specific tunnel. Lets pretend, for argument's sake that peer IP is 20.21.22.23. Customer tried de-associating the tunnel by running vpn tu and then choosing to delete ike+ipsec sas option, also vpn tu list del command, no luck, always shows same ID number for security association.
I found few posts about this and in one, Tim Hall menmtioned vpn shell command, we also tried few variations of that, but no joy.
I had a call with T3 guy from DTAC about different vpn issue for another client and asked him this, but he said if neither of methods I mentioned worked, he believes deleting vpn tables from the gateway associated with the tunnel would help, but said the process for that might be somewhat cumbersome, so I did not inquire further.
We just need simple command that would accomplish this.
If anyone has an idea, please be free to share.
Best and thanks as always!
Andy