![]() please help me to trouble shoot this issue. if tunnel force to reset either any of the device service will restore or phase traffic will be in both direction below are the logs. after 30 minutes phase 2 tunnel traffic start flowoing automatically without any changes. ![]() Note : " PHASE-1 NEGOTIATION STARTED AS RESPONDER, MAIN MODE PHASE-1 NEGOTIATION STARTED AS INITIATOR, MAIN MODE PHASE-1 NEGOTIATION FAILED AS INITIATOR, MAIN MODE Failed SA: 10.75.75.78-10.76.76.100 cookie:eab5be199890e4cc:0000000000000000 PHASE-2 NEGOTIATION STARTED AS RESPONDER, (QUICK MODE) PHASE-1 SA DELETED Deleted SA: 10.75.75.78-10.76.76.100 cookie:666b567f1c505723:9bd08e2fb85b7260 ĩ 00:55:38 info vpn Primary-GW ike-send-p1-delete 0 IKE protocol phase-1 SA delete message sent to peer. application are not working any of phase 2. The logs can also be found under var/log/pan/ikemgr.log while checking on the Tech Support File. To view the debugs you can use the below command on the cli. The debug can be turned off with the below commands. > debug ike tunnel Primary-Tunnel on debug Primary-GW is the IKE Gateway that holds the Phase 1 settings. Primary-Tunnel is the IPSec tunnel name usually refers to the Phase 2. The following debug is enabled to get the debug logs shown in the document. This document explains the various error logs seen during the IPSec tunnel negotiation issues.
0 Comments
Leave a Reply. |
Details
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |