Link to home
Start Free TrialLog in
Avatar of CeLLuS
CeLLuS

asked on

VPN tunnel from PIX to CheckPoint (Behind F5 BigIP)

Is there a way to setup a VPN tunnel from a PIX to a Checkpoint Firewall (with its external interface running with a private IP address) behind a F5 BigIP that is NATing a Public IP address to the private IP address.  

When debuging I get the following error message:
crypto_isakmp_process_block:src:152.200.x.x, dest: 129.41.x.x spt:500 dpt:500
ISAKMP: reserved not zero on payload 5!
ISAKMP: malformed payload

TIA
Avatar of parbul
parbul
Flag of Mexico image

HI.

Check the time and date of  both boxes (pix and checkpoint) , need to be  equal.

Bye
According to Cisco, this means that the ISAKMP keys do not match. Rekey/reset in order to ensure accuracy.
ASKER CERTIFIED SOLUTION
Avatar of Carlos Hernandez
Carlos Hernandez
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial