Tunnel Establishment

Persistent Tunnel

In this mode, while using AGNS managed authentication, the tunnel is automatically established using credentials which are stored locally on the VPN Gateway. If the tunnel is disconnected for any reason other than by the user via the web interface, the tunnel will automatically be re-established. For normal failures, the VPN Gateway will continue to retry the connection after either an AT&T Administration Server configured Tunnel Reconnect Delay2, or a random delay between 30 and 90 seconds. If, however, the error code is considered a “fatal error” (for example the credentials or configuration is invalid), or the VPN Gateway has been disconnected, then retries will be spaced 12 hours apart to avoid unnecessary load on AT&T Administration Server. For this to work on a dial connection, dial tunnel automation must also be set to persistent mode.

2: The Tunnel Reconnect Delay configurable through the AT&T Administration Server is only applied for disconnects with #300 as the error code.

Broadband Connection

In the case of operation over a broadband connection, if the tunnel is manually disconnected by the user, whenever the device is rebooted, it reverts to Persistent Tunnel mode automatically.

Dial Primary Connection

In the case of operation over a Dial Primary connection, if the tunnel is manually disconnected by the user, persistent tunnel automation remains off, even after a reboot. It is necessary to manually bring the tunnel back up to restore Persistent Tunnel automation.

In both cases following a manually-initiated tunnel disconnect, if the user manually brings the tunnel back up, persistent tunnel logic is restored.

Additional Options

User Initiated Tunnel, VRRP Controlled Tunnel, Traffic Initiated Tunnel, Initiation Based on Internet Connection