?
Solved

Remote Cisco Srp527W   device  VPN to ASA 5505  fails.

Posted on 2011-04-22
1
Medium Priority
?
1,274 Views
Last Modified: 2012-06-21
Hi,

I am setting authentication for the "DefaultRAGroup"  to XAuth but vpn fails. Any idea what is going on here?
Thanks

Apr 22 14:43:52 [IKEv1]: IP = 76.102.191.0, IKE_DECODE RECEIVED Message (msgid=c80206f3) with payloads : HDR + HASH (8) + ATTR (14) + NONE (0) total length : 74
Apr 22 14:43:52 [IKEv1 DEBUG]: Group = DefaultRAGroup, Username = ð„, IP = 76.102.191.0, process_attr(): Enter!
Apr 22 14:43:52 [IKEv1 DEBUG]: Group = DefaultRAGroup, Username = ð„, IP = 76.102.191.0, Processing MODE_CFG Reply attributes.
Apr 22 14:43:52 [IKEv1 DEBUG]: Group = DefaultRAGroup, Username = ð„, IP = 76.102.191.0, constructing blank hash payload
Apr 22 14:43:52 [IKEv1 DEBUG]: Group = DefaultRAGroup, Username = ð„, IP = 76.102.191.0, constructing qm hash payload
Apr 22 14:43:52 [IKEv1]: IP = 76.102.191.0, IKE_DECODE SENDING Message (msgid=3390d454) with payloads : HDR + HASH (8) + ATTR (14) + NONE (0) total length : 60
Apr 22 14:43:52 [IKEv1]: IP = 76.102.191.0, IKE_DECODE RECEIVED Message (msgid=d5f7519e) with payloads : HDR + HASH (8) + DELETE (12) + NONE (0) total length : 76
Apr 22 14:43:52 [IKEv1 DEBUG]: Group = DefaultRAGroup, Username = ð„, IP = 76.102.191.0, processing hash payload
Apr 22 14:43:52 [IKEv1 DEBUG]: Group = DefaultRAGroup, Username = ð„, IP = 76.102.191.0, processing delete
Apr 22 14:43:52 [IKEv1]: Group = DefaultRAGroup, Username = ð„, IP = 76.102.191.0, Connection terminated for peer ð„.  Reason: Peer Terminate  Remote Proxy N/A, Local Proxy N/A
Apr 22 14:43:52 [IKEv1 DEBUG]: Group = DefaultRAGroup, Username = ð„, IP = 76.102.191.0, IKE SA MM:4f5518ec terminating:  flags 0x01048a02, refcnt 0, tuncnt 0
Apr 22 14:43:52 [IKEv1]: Group = DefaultRAGroup, Username = ð„, IP = 76.102.191.0, Removing peer from peer table failed, no match!
Apr 22 14:43:52 [IKEv1]: Group = DefaultRAGroup, Username = ð„, IP = 76.102.191.0, Error: Unable to remove PeerTblEntry
0
Comment
Question by:Sean
1 Comment
 
LVL 10

Accepted Solution

by:
koudry earned 2000 total points
ID: 35451191
Hello,

The "Error: Unable to remove PeerTblEntry" message is often an indication that you have a "mismatched ISAKMP policies or a missing NAT 0 statement" - see also:

http://www.cisco.com/en/US/products/ps6120/products_tech_note09186a00807e0aca.shtml

You may want to take a look at the post at http://www.dslreports.com/forum/r18549022-ASA-5505-remote-VPN.

http://www.sadikhov.com/forum/index.php?showtopic=144195

Thanks.
0

Featured Post

Free Tool: ZipGrep

ZipGrep is a utility that can list and search zip (.war, .ear, .jar, etc) archives for text patterns, without the need to extract the archive's contents.

One of a set of tools we're offering as a way to say thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This past year has been one of great growth and performance for OnPage. We have added many features and integrations to the product, making 2016 an awesome year. We see these steps forward as the basis for future growth.
Just after setting up Cloud PBX connectivity and migrated Skype users to SFBO, we noticed inbound calls not working but outbound calls would work.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Suggested Courses

601 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question