Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
adamec
Contributor
Jump to solution

Missmatched GW name in VTI and GW object

Hi we have a problem with IPSEC VPN s2s. Let's say there are 2 GWs named LocalGW (our site) and RemoteGW (remote site).

We on out local site created object of remote GW called "Remote_GW" and created a VTI with GW peer name "RemoteGW" (difference in underscore _ ) thus the packets are being dropped with error message "According to the policy the packet should not have been decrypted". My question is, does it suffice if we just rename the VTI to the name "Remote_GW" or does object name and VTI peer GW name also need to match a real remote GW name (RemoteGW) ???

 

Thanks

0 Kudos
1 Solution

Accepted Solutions
AmirArama
Employee
Employee

The peer name in VTI needs to match the smartconsole gw object name

View solution in original post

2 Replies
AmirArama
Employee
Employee

The peer name in VTI needs to match the smartconsole gw object name

the_rock
Legend
Legend

As @AmirArama said, it HAS TO match, exactly, so if character is missing, it will never work, period.

Andy

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events