hi all 

thanks for your support

the problem seemed that the VPN was retested from a side and the SA association 
from the other end 

> Date: Mon, 9 Aug 2010 15:16:04 +0200
> From: [email protected]
> To: [email protected]
> Subject: Re: [c-nsp] Site to Site VPN
> 
> On Mon, Aug 09, 2010 at 01:40:14PM +0300, Mohammad Khalil wrote:
> > thanks for the response 
> > now man i have another issue is that the show crypto isakmp sa is showing 
> > that the tunnel is up QM_IDLE
> > but i cannot ping the other side and it was working normally 
> > and i see in the log message that there is "it is temporarly disabled due 
> > to recursive routing"
> 
> I've never seen this message in combination with IPSEC so far, but with
> GRE that meant the system was now trying to reach the tunnel endpoint
> by sending the traffic *into* the tunnel. Could be the same for this
> scenario?
> 
> Ciao
>     Joerg
> -- 
> Joerg Mayer                                           <[email protected]>
> We are stuck with technology when what we really want is just stuff that
> works. Some say that should read Microsoft instead of technology.
> _______________________________________________
> cisco-nsp mailing list  [email protected]
> https://puck.nether.net/mailman/listinfo/cisco-nsp
> archive at http://puck.nether.net/pipermail/cisco-nsp/
                                          
_______________________________________________
cisco-nsp mailing list  [email protected]
https://puck.nether.net/mailman/listinfo/cisco-nsp
archive at http://puck.nether.net/pipermail/cisco-nsp/

Reply via email to