Solved

VPN Connection is failing.

Posted on 2007-03-19
3
415 Views
Last Modified: 2012-05-05
I just setup a VPN connection using a Netgear FVS318 router and a PIX Firewall and the two just refuse to link up, I am getting the following in my log file...


[2007-03-19 21:59:20][==== IKE PHASE 1(to XXX.XXX.XXX.XXX) START (initiator) ====]
[2007-03-19 21:59:20]**** SENT OUT  FIRST MESSAGE OF MAIN MODE ****
[2007-03-19 21:59:20]<POLICY: XXX> PAYLOADS: SA,PROP,TRANS
[2007-03-19 21:59:21]**** RECEIVED SECOND MESSAGE OF MAIN MODE ****
[2007-03-19 21:59:21]<POLICY: XXX> PAYLOADS: SA,PROP,TRANS
[2007-03-19 21:59:22]**** SENT OUT  THIRD MESSAGE OF MAIN MODE ****
[2007-03-19 21:59:22]<POLICY: XXX> PAYLOADS: KE,NONCE
[2007-03-19 21:59:23]**** RECEIVED FOURTH MESSAGE OF MAIN MODE ****
[2007-03-19 21:59:23]<POLICY: XXX> PAYLOADS: KE,NONCE,VID,VID,VID,VID
[2007-03-19 21:59:25]<ID PAYLOAD> Type = ID_IPV4_ADDR,ID Data=XXX.XXX.XXX.XXX
[2007-03-19 21:59:25]**** SENT OUT  FIFTH MESSAGE OF MAIN MODE ****
[2007-03-19 21:59:25]**** RECEIVED  SIXTH MESSAGE OF MAIN MODE ****
[2007-03-19 21:59:25]<POLICY: XXX> PAYLOADS: ID,HASH
[2007-03-19 21:59:25]SENDING NOTIFY MSG:
[2007-03-19 21:59:25]INVALID_ID_INFORMATION
0
Comment
Question by:RWJDCom
3 Comments
 
LVL 28

Accepted Solution

by:
batry_boy earned 250 total points
ID: 18753640
Post your PIX config (especially the crypto and isakmp commands) so we can take a look...
0
 
LVL 8

Assisted Solution

by:charan_jeetsingh
charan_jeetsingh earned 250 total points
ID: 18761498
it seems that ike is ok but ipsec SA is failing. it will be gud if you can post PIX errors. and config as well
0
 
LVL 8

Author Comment

by:RWJDCom
ID: 18792708
I got the system working.  I don't exactly know what the problem was but I did get it setup and working fine.  Thanks for your assistance.
0

Featured Post

What Is Threat Intelligence?

Threat intelligence is often discussed, but rarely understood. Starting with a precise definition, along with clear business goals, is essential.

Join & Write a Comment

This article assumes you have at least one Cisco ASA or PIX configured with working internet and a non-dynamic, public, address on the outside interface. If you need instructions on how to enable your device for internet, or basic configuration info…
Have you experienced traffic destined through a Cisco ASA firewall disappears and you do not know if the traffic stops in the firewall or somewhere else? The solution is the capture feature. This feature was released in 6.2(1) and works in all firew…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

708 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

13 Experts available now in Live!

Get 1:1 Help Now