We had following infrastructure:
- one management server R77.30
- one security gateway R77.20
Recently we upgraded management server to R80.40 and after that all VPNs with 3rd party peers have got a problem even if VPN is established:
"Packet is dropped because there is no valid SA - please refer to solution sk19423 in SecureKnowledge Database for more information"
What we tried:
- dissabled suppernetting for a community (changed the ike_p2_enable_supernet_from_R80.20 parameter from "by_global" to "false")
- reset SA for a peer (#vpn tu, 7 Peer-IP)
both didn't help.
How can we fix this issue?
Thank you in advance!