Created on 08-30-2005 12:00 AM
Description | Dialup IPSec sessions established with FortiClient may terminate after 1800 seconds. |
Components |
|
Steps or Commands | If a dialup IPSec tunnel has an underscore (_) in its Phase 2 name, existing sessions between a FortiClient user and a FortiGate unit may be terminated when the tunnel is rekeyed (re-negotiated). The default rekey timer for IPSec Phase 2 is 1800 seconds (30 minutes). You can configure this option on both the FortiGate unit and in the FortiClient software. This parameter is also known as the ‘keylife’ or the ‘lifetime’. WorkaroundDo not use the underscore character in IPSec Phase 2 names. SolutionThis issue was corrected in a post v2.80-MR11 release. |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.