- CheckMates
- :
- Products
- :
- Quantum
- :
- Security Gateways
- :
- Re: IPSEC VPN
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
IPSEC VPN
Hello,
I just configured an ipsec vpn with a 3rd party Firewall.
Ike phase 1 is OK.
in logs, i see dropped paquets between the Mgmt interface of my local GW and the remote public ip of 3rd party.
Can Someone advice me on this case.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
You can start here for debugging.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Thank you,
I tried all of this , but i can't figure out the problem.
Is it normal to see drops between the Mgmt ip of the gateway and the peer ip?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
You haven't described your precise configuration, which makes it difficult to know if you've configured something incorrectly.
What do you have Link Selection configured to use in this case?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Phase 2 issues might be caused by different encryption/hash algorithms on one side, but since phase 1 is working I think the encryption domains are wrong. Can you post your settings and an excerpt from the vpn log?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
"dropped paquets between the Mgmt interface of my local GW"
Mgmt Interface?
Link selection config issue?
Routing?
🤔
Drop reason from log would be helpful. 😏
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
i have not modified the Link selection.
I am facing problems with my cluster, it is not stable.
Thank you to all.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
There can be many reasons a VPN doesn't work.
We would need to know a LOT more about the underlying configuration and the precise errors you're seeing.
Output of some of the debugs might be helpful as well.
If you're not comfortable sharing on a public community (which I totally understand), I highly recommend opening a case with our TAC.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
All Screenshots and log entries or debug outputs are easy to anonymize 🙂
