Some of the SonicWalls that I have deployed for my organization’s remote locations rely on a cellular service provided by Sierra Wireless devices for an internet connection, since these locations are so remote the connection will drop obviously disconnecting the VPN tunnel. The internet will eventually reconnect itself but I must travel to the location, connect to the network, and ping back to the office to get the VPN to reconnect.<\/p>\n
Advertisement
I have enabled Keep Alive on the remote SonicWall only and enabled Dead Peer Detection, the Sierra Wireless devices are configured for IP passthrough to to SonicWall’s WAN port but I’m unsure if this would prevent the VPN from reconnecting since the internet works every time I go onsite. Any suggestions for this issue are greatly appreciated<\/p>","upvoteCount":4,"answerCount":14,"datePublished":"2025-05-21T19:06:14.255Z","author":{"@type":"Person","name":"IFightSonicWalls","url":"https://community.spiceworks.com/u/IFightSonicWalls"},"suggestedAnswer":[{"@type":"Answer","text":"
Advertisement
Some of the SonicWalls that I have deployed for my organization’s remote locations rely on a cellular service provided by Sierra Wireless devices for an internet connection, since these locations are so remote the connection will drop obviously disconnecting the VPN tunnel. The internet will eventually reconnect itself but I must travel to the location, connect to the network, and ping back to the office to get the VPN to reconnect.<\/p>\n
I have enabled Keep Alive on the remote SonicWall only and enabled Dead Peer Detection, the Sierra Wireless devices are configured for IP passthrough to to SonicWall’s WAN port but I’m unsure if this would prevent the VPN from reconnecting since the internet works every time I go onsite. Any suggestions for this issue are greatly appreciated<\/p>","upvoteCount":4,"datePublished":"2025-05-21T19:06:14.316Z","url":"https://community.spiceworks.com/t/sonicwall-vpn-keep-alive-failing/1208049/1","author":{"@type":"Person","name":"IFightSonicWalls","url":"https://community.spiceworks.com/u/IFightSonicWalls"}},{"@type":"Answer","text":"
I’m not sure I follow the scenario, let me ask a couple clarifying questions as well as suggestion. You have remote sites with SonicWalls running site-to-site (IPSEC) tunnels, or client (SSL) connections? \nDo you have any devices at these sites? I assume you do, otherwise why would you would not need to have connectivity. \nWhen you go on site, physically plug in, and execute a ping back to HQ, the SonicWall reconnects and everything resumes normal operation? Can you set up a scheduled task to ping HQ from one of the devices on site? Perhaps every 5 minutes send a ping, that way your longest down time would be 5 minutes.<\/p>","upvoteCount":4,"datePublished":"2025-05-21T19:15:16.158Z","url":"https://community.spiceworks.com/t/sonicwall-vpn-keep-alive-failing/1208049/2","author":{"@type":"Person","name":"AdmiralKirk","url":"https://community.spiceworks.com/u/AdmiralKirk"}},{"@type":"Answer","text":"
Sorry, I should have clarified. Yes, I am running site-to-site IPSEC tunnel connections from a NSa 2700 to the remote TZ80 sonicwalls. The devices connected to the sonicwalls are SCADA and metering equipment to allow system reporting and remote meter reading. You are correct, whenever I go and connect to the local network and ping back to our main office operations will immediately resume as normal. I must have misunderstood the function of keep alive as I thought the remote Sonicwall would ping back to the office to ensure the tunnel would stay operational, I can look at scheduling a ping every 5 minutes and see if that solves the problem.<\/p>","upvoteCount":2,"datePublished":"2025-05-22T20:05:10.458Z","url":"https://community.spiceworks.com/t/sonicwall-vpn-keep-alive-failing/1208049/3","author":{"@type":"Person","name":"IFightSonicWalls","url":"https://community.spiceworks.com/u/IFightSonicWalls"}},{"@type":"Answer","text":"
I agree with you, the idea that the word ‘keepalive’ brings to mind is a method to keep the connection alive instead of letting it stagnate or drop. I admit I’ve never quite grasped the actual application of keepalive on SonicWall, so I can’t give you insight. \nTry the ping, let us know. It feels like a hack, but it is simple and if it works then I guess that is good.<\/p>","upvoteCount":2,"datePublished":"2025-05-22T20:36:40.071Z","url":"https://community.spiceworks.com/t/sonicwall-vpn-keep-alive-failing/1208049/4","author":{"@type":"Person","name":"AdmiralKirk","url":"https://community.spiceworks.com/u/AdmiralKirk"}},{"@type":"Answer","text":"
Is dead peer detection enabled on the central SW? this should clear the vpn when the remote site goes down. \nOn SW traffic is required to establish VPN. So you will need some regular traffic - do you monitor the remote sites etc?<\/p>","upvoteCount":3,"datePublished":"2025-05-22T21:24:00.046Z","url":"https://community.spiceworks.com/t/sonicwall-vpn-keep-alive-failing/1208049/5","author":{"@type":"Person","name":"matt7863","url":"https://community.spiceworks.com/u/matt7863"}},{"@type":"Answer","text":"