Idle Timeout For GVC users
Best Answers
-
Saravanan Moderator
Hello @DARSHIL,
Unfortunately, there is no setting for the idle timeout for Global VPN Client users, This is by design, The reason is, GVC VPN users are considering the lifetime (28800 Seconds) factor in the WAN Group VPN policy as their idle timeout value.
The idle timeout setting is available for SSLVPN Users. There is an explicit setting for it in the firewall appliance.
Please find the below screenshot for the inactivity timeout option in SSLVPN. The timeout works only when the check box "SSLVPN Inactivity Check" is enabled.
Hope this clarifies.
Have a better day!!!
Regards
Saravanan V
Technical Support Advisor - Premier Services
Professional Services
7 -
Nevyaditha Moderator
Hi @Darshil,
The Inactivity time out for the GVC is not available.
GVC works in Aggressive mode VPN and the IKE session keep alives ( usually in the form of ESP packets received at the firewall) are sent from the client every few minutes.
If we implement the Inactivity timers for negotiated connections where the keep alive traffic is for the link and not the endpoints this will cause unreliable and distrupitve connections . No Current firmware version supports this feature.
But we can control the session time out with the help of IKE Phase 1 and 2 timers, and also with the help of DHCP session limits ( by reducing the DHCP lease time out ).
Thanks
Nevyaditha P
Technical Support Advisor, Premier Services
3
Answers
@Saravanan1990_V Thank You. Got it
@Poorni_5 @Nevyaditha Thank you..This is very helpful.
Thank you @Darshil !!!
Nevyaditha P
Technical Support Advisor, Premier Services
@Darshil You are most Welcome. Glad that we are able to help you. Please feel free to reach out to us in case you need any assistance.
Thanks & Regards,
Poornima.T.R