Preview Tool

Cisco Bug: CSCtf25508 - Virtual-Access int not being released after ezvpn client disconnects

Last Modified

Jan 31, 2017

Products (1)

  • Cisco IOS

Known Affected Releases

12.4(24)T 12.4(24)T1 12.4(24)T2

Description (partial)

Symptoms: ISAKMP profiles cannot be removed. The following error message is 
%Profile is applied to Virtual-Access2-head-0/65536 and possibly other crypto
 Note: The "2" in the error message will differ based on your configuration. 
 the above message, "Virtual-Access2" is referenced because the VTI number, in
 this case, is 2. 
 This keeps many stale dynamic crypto map entries without any valid IPSec SA 
 virtual access interfaces.
 Conditions: The symptom is observed under the following conditions: 
 - Using VTI with EzVPN.
 - Only seen with Cisco IOS Release 12.4(24)T.
Bug details contain sensitive information and therefore require a account to be viewed.

Bug Details Include

  • Full Description (including symptoms, conditions and workarounds)
  • Status
  • Severity
  • Known Fixed Releases
  • Related Community Discussions
  • Number of Related Support Cases
Bug information is viewable for customers and partners who have a service contract. Registered users can view up to 200 bugs per month without a service contract.