Skip to main content
Cisco SD-WAN
Support
Product Documentation
Viptela Documentation

dead-peer-detection

vpn interface dead-peer-detection—Configure the parameters for detecting unreachable IKE peers through an IPsec tunnel (on vEdge routers only).

vManage Feature Template

For vEdge routers only:

Configuration ► Templates ► VPN Interface IPsec

Command Hierarchy

vpn vpn-id
  interface ipsecnumber
    dead-peer-detection interval seconds [retries number]

Options

Liveness Detection Interval
interval seconds
How often to send an IKE Hello packet to determine whether the IKE peer is alive and reachable. The IKE peer responds to the Hello packet by sending an acknowledgement (ACK) packet to the vEdge router.
Range: 0 through 65535 seconds
Default: 10 seconds
Maximum Number of Retries
retries number
How many unacknowledged IKE Hello packets to send before declaring the IKE peer to be dead.
Range: 0 through 255
Default: 3

Example

Change the liveness detection interval to 30 seconds and the number of retries to 10:

vEdge(config)# vpn 1 interface ipsec1
vEdge(config-interface-ipsec1)# dead-peer-detection 30 retries 10

Release Information

Command introduced in Viptela Software Release 17.2.​

Additional Information

See the Configuring IKE article for your software release.

  • Was this article helpful?