Thanks, yeah I pretty much feel like an idiot missing that obvious one. It was the unique identifier in the name field that was wrong.
Main Topics
Browse All TopicsI have a client who has a SonicWALL 2040 at their corporate office and SonicWALL TZ 170s at their stores and they all have a point to point VPN to the corp. office. They recently moved their corporate office to a new location, but left a store behind where the corporate office used to be. So we setup a new TZ 170 there just like the rest of the stores and pointed it (and all the other stores VPNs) to the new office's IP. All the stores came up - except the new router at previous location of the corp offices. The VPN setup is identical to the others and I have done everything I can think of including resetting up the VPN several times, hard resetting the new TZ 170 and setting it up all over again, and searching the logs for clues. Here is a snippet of the logs:
From the TZ 170:
Time/Message/Source/Destin
1 09/12/2007 17:25:37.064 Received notify: INVALID_ID_INFO [Corp IP] [Store IP]
2 09/12/2007 17:25:34.528 IKE Initiator: No response - remote party timeout [Store IP], 500 [Corp IP], 500
3 09/12/2007 17:25:34.416 Administrator login allowed 192.168.71.149, 0, LAN (admin) 192.168.71.1, 80, LAN admin, TCP Web (HTTP)
4 09/12/2007 17:25:28.928 Web management request allowed 192.168.71.149, 1618, LAN 192.168.71.1, 80, LAN TCP Web (HTTP)
5 09/12/2007 17:25:27.128 Received notify: INVALID_ID_INFO [Corp IP] [Store IP]
6 09/12/2007 17:25:24.528 IKE Initiator: No response - remote party timeout [Store IP], 500 [Corp IP], 500
7 09/12/2007 17:25:20.800 Received notify: INVALID_ID_INFO [Corp IP] [Store IP]
8 09/12/2007 17:25:18.528 IKE Initiator: Start Aggressive Mode negotiation (Phase 1) [Store IP], 500 [Corp IP], 500
9 09/12/2007 17:24:07.512 IKE negotiation aborted due to timeout [Store IP] [Corp IP]
10 09/12/2007 17:23:32.880 Received notify: INVALID_ID_INFO [Corp IP] [Store IP]
11 09/12/2007 17:23:31.512 IKE Initiator: No response - remote party timeout [Store IP], 500 [Corp IP], 500
12 09/12/2007 17:23:13.608 Received notify: INVALID_ID_INFO [Corp IP] [Store IP]
13 09/12/2007 17:23:11.512 IKE Initiator: No response - remote party timeout [Store IP], 500 [Corp IP], 500
From the 2040 Pro:
09/12/2007 17:30:07.080 Administrator login allowed 10.10.1.1, LAN 10.10.1.254, 80, LAN admin,Web (HTTP)
09/12/2007 17:30:01.464 Received notify: INVALID_ID_INFO [Store IP] [Corp IP]
09/12/2007 17:30:01.352 IKE Initiator: No response - remote party timeout [Corp IP], 500 [Store IP], 500
09/12/2007 17:29:57.816 IKE Responder: Received Aggressive Mode request (Phase 1) [Store IP] [Corp IP]
09/12/2007 17:29:56.560 Received notify: INVALID_ID_INFO [Store IP] [Corp IP]
09/12/2007 17:29:56.352 IKE Initiator: Start Aggressive Mode negotiation (Phase 1) [Corp IP] [Store IP]
09/12/2007 17:29:55.080 Web management request allowed 10.10.1.1, 2687, LAN 10.10.1.254, 80, LAN Web (HTTP)
09/12/2007 17:29:37.720 IKE Responder: Received Aggressive Mode request (Phase 1) [Store IP] [Corp IP]
09/12/2007 17:29:25.720 IKE Responder: Received Aggressive Mode request (Phase 1) [Store IP] [Corp IP]
09/12/2007 17:29:18.816 IKE Responder: Received Aggressive Mode request (Phase 1) [Store IP] [Corp IP]
09/12/2007 17:27:09.368 IKE negotiation aborted due to timeout [Corp IP] [Store IP]
09/12/2007 17:26:37.688 Received notify: INVALID_ID_INFO [Store IP] [Corp IP]
09/12/2007 17:26:35.352 IKE Initiator: No response - remote party timeout [Corp IP], 500 [Store IP], 500
09/12/2007 17:26:16.880 Received notify: INVALID_ID_INFO [Store IP] [Corp IP]
09/12/2007 17:26:15.368 IKE Initiator: No response - remote party timeout [Corp IP], 500 [Store IP], 500
09/12/2007 17:26:06.112 Received notify: INVALID_ID_INFO [Store IP] [Corp IP]
09/12/2007 17:26:03.368 IKE Initiator: No response - remote party timeout [Corp IP], 500 [Store IP], 500
09/12/2007 17:25:58.928 Received notify: INVALID_ID_INFO [Store IP] [Corp IP]
09/12/2007 17:25:56.352 IKE Initiator: Start Aggressive Mode negotiation (Phase 1) [Corp IP] [Store IP]
09/12/2007 17:25:52.704 IKE Responder: Received Aggressive Mode request (Phase 1) [Store IP] [Corp IP]
I search for INVALID_ID_INFO, but didn't really come up with anything. Any insight would be hugely appreciated. Thanks.
This Question has been solved and asker verified All Experts Exchange premium technology solutions are available to subscription members.
Experts Exchange has been collecting answers to technology questions since 1996…3 million and counting! If you have a question, chances are we already have your answer.
If you can't find the exact answer you're looking for, ask our exclusive community of 50,000 experts. You’ll get a personalized answer from a trusted professional.
Thousands of free tech tips, tricks, how-to’s and tutorials are available in our peer reviewed articles section. See for yourself how smart our experts are, no login required.
Access the answers to your technology questions today.
30-day free trial. Register in 60 seconds.
Members of the expert community talk about why the experience at Experts Exchange is different than what you will find anywhere else.

Try it out and discover for yourself.
30-day free trial. Register in 60 seconds.
Join the community of experts here and help other tech pros by answering question in your area of expertise. You can earn FREE access to all Experts Exchange's premium features and resources.
Business Accounts
Answer for Membership
by: admstngPosted on 2007-09-13 at 23:21:33ID: 19889329
I could be wrong, but make sure that the unique identifier of each box is entered on the box on the other side. That's part of phase one I believe. I just setup the exact tunnel (2040 and TZ) but it's out of my head already... Obviously, make sure the rest is correct, remote gateways of each box, and match up phase one and 2 protocols... Make sure remote subnets are correct, send a ping to a node on the other network, then recheck logs..
Hope that helps..