I'm trying to reach my remote production network connecting in this fashion:
SSLVPN -> Checkpoint (UTM) -> VPN Tunnel ("Lan link") -> Cisco ASA -> Remote Network.
Error message Checkpoint: "Encryption fail reason: Packet is dropped because there is no valid SA".
Error message Cisco: "Rejecting IPsec tunnel: No matching crypto map entry for remote proxy 0.0.0.0/0.0.0.0 local proxy 195.159.X.X/X.X.X.X on interface link.
And: QM FSM error (P2 struct ......)
It seems like my VPN network is not being identified correctly?
The VPN tunnel is working fine for all other local networks. The VPN network which is 172.31.200.0/24 is basically just an IP pool, and has no interface on the Checkpoint firewall.
Funny thing is i have an identical link to a production environment in sweden with the same hardware and settings, and it works. Only difference is that the link is over the internet.