Hello, I am troubleshooting a problem with negotiating a VPN tunnel to a client's network. I have a SonicWall Pro 200. The client is running a Cisco Concentrator 3000. I am pretty sure I have configured my end of the tunnel correctly. The Security Associations is configured as an IKE using preshared secret.
The only thing I noticed was that on the "IKE Initiator: Accepting IPSec proposal (Phase 2)" Notes entry. "x.x.x.128" is not even part of our subnet. Our subnet consists of x.x.x.129 to x.x.x.255. I was trying to figure out if the problem is on my end or the clients end. Is the problem on my end? Has anybody seen this problem before? Any other thoughts? - Kevin Log file entries when negotiating tunnel: Time: 3/28/03 8:50 AM Message: IKE negotiation complete. Adding IPSec SA. (Phase 2) Source: x.x.x.231 Destination: y.y.y.61 Notes: ESP:3DES, HMAC_MD5, lifeSeconds=28800 Local SPI:0x84a13725 Remote SPI:0xa790a56 Time: 3/28/03 8:50 AM Message: IKE Initiator: Accepting IPSec proposal (Phase 2) Source: x.x.x.231 Destination: y.y.y.61 Notes: x.x.x.128/25 -> y.y.y.23/32 Time: 3/28/03 8:50 AM Message: IKE Initiator: Start Quick Mode (Phase 2). Source: x.x.x.231 Destination: y.y.y.61 Notes: Time: 3/28/03 8:50 AM Message: IKE Initiator: Main Mode complete (Phase 1) Source: x.x.x.231 Destination: y.y.y.61 Notes: 3DES MD5 Group 2 lifeSeconds=28800 Time: 3/28/03 8:50 AM Message: NAT Discovery : Peer IPSec Security Gateway doesn't support VPN NAT Traversal Source: x.x.x.231 Destination: y.y.y.61 Notes: Time: 3/28/03 8:50 AM Message: NAT Discovery : IKE Initiator: Start Main Mode negotiation (Phase 1) Source: x.x.x.231 Destination: y.y.y.61 Notes: --- [This E-mail scanned for viruses by Declude/F-Prot AV] =================================================================================================== To unsubscribe, send email to [EMAIL PROTECTED] In the body of the email put the following: unsubscribe sonicwall your_name The archive of this list is at http://www.mail-archive.com/sonicwall%40peake.com/
