Quantcast
Channel: ScreenOS Firewalls (NOT SRX) topics
Viewing all articles
Browse latest Browse all 763

VPN failing at early IKE state

$
0
0

Hi,

 

I'm having issues with the following messages in the event logs:

 

Phase 1: Retransmission limit has been reached.
Rejected an IKE packet on ethernet0/2.1 from 74.92.x.x:500 to 72.21.x.x:500 with cookies 0592f89ee9319045 and eefa6cc6b03ea633 because The peer sent a packet with a message ID before Phase 1 authentication was done.

 

Traffic is passing through and reaching the remote side. The remote side is seeing traffic.

 

I have allowed all the necessary ports through the firewall for VPN. The VPN is inactive and I cannot telnet to remote side client on 1023 even though the port is allowed.

 

Any tips that can help me troubleshoot this?

 

 

Thank you in advance.

 


Viewing all articles
Browse latest Browse all 763

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>