inbuilt cisco IPSEC vpn client and KeyLife Timeout setting...

Hi Guys


I am having issues with the in built cisco vpn client on the mac, I am currrently using Mac OSx 10.7.4



I have a Fortigate 200B device and have setup the IPSec VPN settings to have a keylife of 86400 seconds.


However the expereince I am having with the mac clients is that after about 50 minutes the users are being asked to re-authencate to the VPN...


When checkin the debug logs I can see that the peer (mac client) is setting the phase 2 tunnel key lifetime to 3600 seconds which is 1 Hour...


Usually in IPSec a re-negeotiation process takes place about 10 minutes or so before the key expires..


My question is where are the VPN settings kept in the Mac... I know it uses Racoon for the IPSec exchange of key and so I would like to tweak the VPN profiles so that the mac sets the lifetime of the key to 86400 instead of 3600 by default...


Also want to be able to set logging to debug mode for the Racoon application on mac clients.



Your help is much appreciated


Kind Regards


Mohamed

Cisco VPN Client -OTHER, Mac OS X (10.7.4), Cisco IPSec with Fortigate Firewall

Posted on Mar 6, 2013 6:31 AM

Reply

There are no replies.

This thread has been closed by the system or the community team. You may vote for any posts you find helpful, or search the Community for additional answers.

inbuilt cisco IPSEC vpn client and KeyLife Timeout setting...

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple Account.