IKEv2 VPN address pool lease time


Is there a way that I can check and/or change the lease time on the virtual addresses that our Firebox distributes to VPN users?
When I first set up IKEv2 VPN, I used a small pool of 16 addresses to try it out. More users have switched from SSL VPN to IKEv2 now and one morning I couldn't connect because "there are no available addresses" (I found that in the WG log). What didn't make sense though was that there were only 6 user on IKEv2 at the time, so I'm wondering how long the lease time is.

I have increased the address pool now to accomodate more users, but it would be nice to know if I can tweak the lease times as well.


  • Options

    Normally when a VPN client connection ends, the virtual IP addr in use is released.
    As this does not seem to be your case, consider opening a support incident on this.

  • Options

    Good to know!
    If it happens again I will do that. Thanks, Bruce.

Sign In to comment.