<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: FMC/FDT site to site VPN in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/fmc-fdt-site-to-site-vpn/m-p/4799084#M1098879</link>
    <description>&lt;P&gt;Ya there was no logs about the tunnel itself, because my FTD works as server and was waiting for connection. Setting up the connection type on my side to "Originate Only" started connecting and finally logs appear.&lt;/P&gt;</description>
    <pubDate>Wed, 22 Mar 2023 08:38:14 GMT</pubDate>
    <dc:creator>edp-adm</dc:creator>
    <dc:date>2023-03-22T08:38:14Z</dc:date>
    <item>
      <title>FMC/FDT site to site VPN</title>
      <link>https://community.cisco.com/t5/network-security/fmc-fdt-site-to-site-vpn/m-p/4798342#M1098829</link>
      <description>&lt;P&gt;Hello&lt;/P&gt;&lt;P&gt;I have Firepower 1120 and configured s2s VPN to 3rd party using parameters as below&lt;/P&gt;&lt;P&gt;IKEv1 Encryption AES-256 Hash SHA Lifetime: 21600&lt;/P&gt;&lt;P&gt;IPSec Encryption AES-256 Hash SHA&amp;nbsp;&lt;SPAN&gt;Lifetime: 3600&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;DH14&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;With NAT&amp;nbsp;&lt;/P&gt;&lt;P&gt;nat (local_ip_pool,outsite_interface) source static local_ip_pool local_ip_pool destination static external_ip_pool external_ip_pool no-proxy-arp&lt;/P&gt;&lt;P&gt;Tunnel is in "Unknown" status&lt;/P&gt;&lt;P&gt;Is there any way to debug this via FMC/FTD? I tried to setup logging at FMC Devices -&amp;gt; Platform Settings -&amp;gt; Syslog&amp;nbsp; but there is nothing helpful for debugging s2s&lt;/P&gt;</description>
      <pubDate>Tue, 21 Mar 2023 10:25:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-fdt-site-to-site-vpn/m-p/4798342#M1098829</guid>
      <dc:creator>edp-adm</dc:creator>
      <dc:date>2023-03-21T10:25:23Z</dc:date>
    </item>
    <item>
      <title>Re: FMC/FDT site to site VPN</title>
      <link>https://community.cisco.com/t5/network-security/fmc-fdt-site-to-site-vpn/m-p/4798709#M1098854</link>
      <description>&lt;P&gt;have you tried debugging using FTD CLI?&lt;/P&gt;</description>
      <pubDate>Tue, 21 Mar 2023 16:47:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-fdt-site-to-site-vpn/m-p/4798709#M1098854</guid>
      <dc:creator>Herald Sison</dc:creator>
      <dc:date>2023-03-21T16:47:23Z</dc:date>
    </item>
    <item>
      <title>Re: FMC/FDT site to site VPN</title>
      <link>https://community.cisco.com/t5/network-security/fmc-fdt-site-to-site-vpn/m-p/4799084#M1098879</link>
      <description>&lt;P&gt;Ya there was no logs about the tunnel itself, because my FTD works as server and was waiting for connection. Setting up the connection type on my side to "Originate Only" started connecting and finally logs appear.&lt;/P&gt;</description>
      <pubDate>Wed, 22 Mar 2023 08:38:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-fdt-site-to-site-vpn/m-p/4799084#M1098879</guid>
      <dc:creator>edp-adm</dc:creator>
      <dc:date>2023-03-22T08:38:14Z</dc:date>
    </item>
    <item>
      <title>Re: FMC/FDT site to site VPN</title>
      <link>https://community.cisco.com/t5/network-security/fmc-fdt-site-to-site-vpn/m-p/4799439#M1098895</link>
      <description>&lt;P&gt;Ok I'm able to get logs but tunnel still fails, log from device&amp;nbsp;&lt;A href="https://pastebin.com/yGAKcZt3" target="_self"&gt;pastebin - logs&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 22 Mar 2023 15:40:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-fdt-site-to-site-vpn/m-p/4799439#M1098895</guid>
      <dc:creator>edp-adm</dc:creator>
      <dc:date>2023-03-22T15:40:54Z</dc:date>
    </item>
    <item>
      <title>Re: FMC/FDT site to site VPN</title>
      <link>https://community.cisco.com/t5/network-security/fmc-fdt-site-to-site-vpn/m-p/4799494#M1098902</link>
      <description>&lt;P&gt;can not open link&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 22 Mar 2023 16:34:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-fdt-site-to-site-vpn/m-p/4799494#M1098902</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-03-22T16:34:51Z</dc:date>
    </item>
    <item>
      <title>Re: FMC/FDT site to site VPN</title>
      <link>https://community.cisco.com/t5/network-security/fmc-fdt-site-to-site-vpn/m-p/4799495#M1098903</link>
      <description>&lt;OL&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;165&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-5-752004: Tunnel Manager dispatching a KEY_ACQUIRE message to IKEv1. Map Tag = CSM_outsite_map. Map Sequence Number = 2.&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;164&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-4-752010: IKEv2 Doesn't have a proposal specified&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715077: Pitcher: received a key acquire message, spi 0x0&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;165&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-5-713041: IP = X.X.X.X, IKE Initiator: New Phase 1, Intf outsite, IKE Peer X.X.X.X local Proxy Address Y.Y.Y.Y, remote Proxy Address X.X.X.X, Crypto map (CSM_outsite_map)&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715046: IP = X.X.X.X, constructing ISAKMP SA payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715046: IP = X.X.X.X, constructing NAT-Traversal VID ver 02 payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715046: IP = X.X.X.X, constructing NAT-Traversal VID ver 03 payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715046: IP = X.X.X.X, constructing NAT-Traversal VID ver RFC payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715046: IP = X.X.X.X, constructing Fragmentation VID + extended capabilities payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-713236: IP = X.X.X.X, IKE_DECODE SENDING Message (msgid=0) with payloads : HDR + SA (1) + VENDOR (13) + VENDOR (13) + VENDOR (13) + VENDOR (13) + NONE (0) total length : 172&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-713906: IKE Receiver: Packet received on Y.Y.Y.Y:500 from X.X.X.X:500&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-713236: IP = X.X.X.X, IKE_DECODE RECEIVED Message (msgid=0) with payloads : HDR + SA (1) + VENDOR (13) + VENDOR (13) + VENDOR (13) + NONE (0) total length : 152&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715047: IP = X.X.X.X, processing SA payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-713906: IP = X.X.X.X, Oakley proposal is acceptable&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715047: IP = X.X.X.X, processing VID payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715047: IP = X.X.X.X, processing VID payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715049: IP = X.X.X.X, Received NAT-Traversal RFC VID&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715047: IP = X.X.X.X, processing VID payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715049: IP = X.X.X.X, Received Fragmentation VID&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715064: IP = X.X.X.X, IKE Peer included IKE fragmentation capability flags: Main Mode: True Aggressive Mode: False&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715046: IP = X.X.X.X, constructing ke payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715046: IP = X.X.X.X, constructing nonce payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715046: IP = X.X.X.X, constructing Cisco Unity VID payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715046: IP = X.X.X.X, constructing xauth V6 VID payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715048: IP = X.X.X.X, Send IOS VID&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715038: IP = X.X.X.X, Constructing ASA spoofing IOS Vendor ID payload (version: 1.0.0, capabilities: 20000001)&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715046: IP = X.X.X.X, constructing VID payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715048: IP = X.X.X.X, Send Altiga/Cisco VPN3000/Cisco ASA GW VID&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715046: IP = X.X.X.X, constructing NAT-Discovery payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-713906: IP = X.X.X.X, computing NAT Discovery hash&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715046: IP = X.X.X.X, constructing NAT-Discovery payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-713906: IP = X.X.X.X, computing NAT Discovery hash&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-713236: IP = X.X.X.X, IKE_DECODE SENDING Message (msgid=0) with payloads : HDR + KE (4) + NONCE (10) + VENDOR (13) + VENDOR (13) + VENDOR (13) + VENDOR (13) + NAT-D (20) + NAT-D (20) + NONE (0) total length : 432&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-713906: IKE Receiver: Packet received on Y.Y.Y.Y:500 from X.X.X.X:500&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-713236: IP = X.X.X.X, IKE_DECODE RECEIVED Message (msgid=0) with payloads : HDR + KE (4) + NONCE (10) + NAT-D (20) + NAT-D (20) + NONE (0) total length : 356&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715047: IP = X.X.X.X, processing ke payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715047: IP = X.X.X.X, processing ISA_KE payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715047: IP = X.X.X.X, processing nonce payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715047: IP = X.X.X.X, processing NAT-Discovery payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-713906: IP = X.X.X.X, computing NAT Discovery hash&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715047: IP = X.X.X.X, processing NAT-Discovery payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-713906: IP = X.X.X.X, computing NAT Discovery hash&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-713906: IP = X.X.X.X, Connection landed on tunnel_group X.X.X.X&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-713906: Group = X.X.X.X, IP = X.X.X.X, Generating keys for Initiator...&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715046: Group = X.X.X.X, IP = X.X.X.X, constructing ID payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715046: Group = X.X.X.X, IP = X.X.X.X, constructing hash payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715076: Group = X.X.X.X, IP = X.X.X.X, Computing hash for ISAKMP&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715046: Group = X.X.X.X, IP = X.X.X.X, constructing dpd vid payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-713236: IP = X.X.X.X, IKE_DECODE SENDING Message (msgid=0) with payloads : HDR + ID (5) + HASH (8) + VENDOR (13) + NONE (0) total length : 84&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;166&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-6-713172: Group = X.X.X.X, IP = X.X.X.X, Automatic NAT Detection Status: Remote end is NOT behind a NAT device This end is NOT behind a NAT device&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-713906: IKE Receiver: Packet received on Y.Y.Y.Y:500 from X.X.X.X:500&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-713236: IP = X.X.X.X, IKE_DECODE RECEIVED Message (msgid=0) with payloads : HDR + ID (5) + HASH (8) + NONE (0) total length : 64&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715047: Group = X.X.X.X, IP = X.X.X.X, processing ID payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-714011: Group = X.X.X.X, IP = X.X.X.X, ID_IPV4_ADDR ID received&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;X.X.X.X&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715047: Group = X.X.X.X, IP = X.X.X.X, processing hash payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715076: Group = X.X.X.X, IP = X.X.X.X, Computing hash for ISAKMP&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-713906: IP = X.X.X.X, Connection landed on tunnel_group X.X.X.X&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;166&amp;gt;:2023-03-22T15:10:19Z: %FTD-auth-6-113009: AAA retrieved default group policy (.DefaultS2SGroupPolicy) for user = X.X.X.X&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-713906: Group = X.X.X.X, IP = X.X.X.X, Oakley begin quick mode&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-714002: Group = X.X.X.X, IP = X.X.X.X, IKE Initiator starting QM: msg id = 4bd7018f&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;165&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-5-713119: Group = X.X.X.X, IP = X.X.X.X, PHASE 1 COMPLETED&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-713121: IP = X.X.X.X, Keep-alive type for this connection: None&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;163&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-3-713122: IP = X.X.X.X, Keep-alives configured on but peer does not support keep-alives (type = None)&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715080: Group = X.X.X.X, IP = X.X.X.X, Starting P1 rekey timer: 16200 seconds.&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-713906: Group = X.X.X.X, IP = X.X.X.X, Add to IKEv1 Tunnel Table succeeded for SA with logical ID 5033984&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-713906: Group = X.X.X.X, IP = X.X.X.X, Add to IKEv1 MIB Table succeeded for SA with logical ID 5033984&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715006: Group = X.X.X.X, IP = X.X.X.X, IKE got SPI from key engine: SPI = 0x3693a6b9&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-713906: Group = X.X.X.X, IP = X.X.X.X, oakley constructing quick mode&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715046: Group = X.X.X.X, IP = X.X.X.X, constructing blank hash payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715046: Group = X.X.X.X, IP = X.X.X.X, constructing IPSec SA payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715046: Group = X.X.X.X, IP = X.X.X.X, constructing IPSec nonce payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715046: Group = X.X.X.X, IP = X.X.X.X, constructing pfs ke payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715001: Group = X.X.X.X, IP = X.X.X.X, constructing proxy ID&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-713906: Group = X.X.X.X, IP = X.X.X.X, Transmitting Proxy Id:&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;Local host: Y.Y.Y.Y Protocol 0 Port 0&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;Remote host: X.X.X.X Protocol 0 Port 0&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-714007: Group = X.X.X.X, IP = X.X.X.X, IKE Initiator sending Initial Contact&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715046: Group = X.X.X.X, IP = X.X.X.X, constructing qm hash payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-714004: Group = X.X.X.X, IP = X.X.X.X, IKE Initiator sending 1st QM pkt: msg id = 4bd7018f&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-713236: IP = X.X.X.X, IKE_DECODE SENDING Message (msgid=4bd7018f) with payloads : HDR + HASH (8) + SA (1) + NONCE (10) + KE (4) + ID (5) + ID (5) + NOTIFY (11) + NONE (0) total length : 456&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-713906: IKE Receiver: Packet received on Y.Y.Y.Y:500 from X.X.X.X:500&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-713236: IP = X.X.X.X, IKE_DECODE RECEIVED Message (msgid=d4894207) with payloads : HDR + HASH (8) + NOTIFY (11) + NONE (0) total length : 64&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715047: Group = X.X.X.X, IP = X.X.X.X, processing hash payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-7-715047: Group = X.X.X.X, IP = X.X.X.X, processing notify payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;165&amp;gt;:2023-03-22T15:10:19Z: %FTD-vpn-5-713068: Group = X.X.X.X, IP = X.X.X.X, Received non-routine Notify message: Invalid ID info (18)&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:27Z: %FTD-vpn-7-713906: IKE Receiver: Packet received on Y.Y.Y.Y:500 from X.X.X.X:500&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:27Z: %FTD-vpn-7-713236: IP = X.X.X.X, IKE_DECODE RECEIVED Message (msgid=d2fb004b) with payloads : HDR + HASH (8) + NOTIFY (11) + NONE (0) total length : 64&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:27Z: %FTD-vpn-7-715047: Group = X.X.X.X, IP = X.X.X.X, processing hash payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:27Z: %FTD-vpn-7-715047: Group = X.X.X.X, IP = X.X.X.X, processing notify payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;165&amp;gt;:2023-03-22T15:10:27Z: %FTD-vpn-5-713068: Group = X.X.X.X, IP = X.X.X.X, Received non-routine Notify message: Invalid ID info (18)&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;166&amp;gt;:2023-03-22T15:10:30Z: %FTD-session-6-305011: Built dynamic UDP translation from any:10.215.4.2/123 to outsite:Y.Y.Y.Y/62336&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:35Z: %FTD-vpn-7-713906: IKE Receiver: Packet received on Y.Y.Y.Y:500 from X.X.X.X:500&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:35Z: %FTD-vpn-7-713236: IP = X.X.X.X, IKE_DECODE RECEIVED Message (msgid=a88e44ff) with payloads : HDR + HASH (8) + NOTIFY (11) + NONE (0) total length : 64&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:35Z: %FTD-vpn-7-715047: Group = X.X.X.X, IP = X.X.X.X, processing hash payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:35Z: %FTD-vpn-7-715047: Group = X.X.X.X, IP = X.X.X.X, processing notify payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;165&amp;gt;:2023-03-22T15:10:35Z: %FTD-vpn-5-713068: Group = X.X.X.X, IP = X.X.X.X, Received non-routine Notify message: Invalid ID info (18)&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:43Z: %FTD-vpn-7-713906: IKE Receiver: Packet received on Y.Y.Y.Y:500 from X.X.X.X:500&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:43Z: %FTD-vpn-7-713236: IP = X.X.X.X, IKE_DECODE RECEIVED Message (msgid=8eb4f4b9) with payloads : HDR + HASH (8) + NOTIFY (11) + NONE (0) total length : 64&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:43Z: %FTD-vpn-7-715047: Group = X.X.X.X, IP = X.X.X.X, processing hash payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:43Z: %FTD-vpn-7-715047: Group = X.X.X.X, IP = X.X.X.X, processing notify payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;165&amp;gt;:2023-03-22T15:10:43Z: %FTD-vpn-5-713068: Group = X.X.X.X, IP = X.X.X.X, Received non-routine Notify message: Invalid ID info (18)&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:49Z: %FTD-vpn-7-715077: Group = X.X.X.X, IP = X.X.X.X, Pitcher: received key delete msg, spi 0x3693a6b9&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;165&amp;gt;:2023-03-22T15:10:49Z: %FTD-vpn-5-713050: Group = X.X.X.X, IP = X.X.X.X, Connection terminated for peer X.X.X.X. Reason: Session Error Terminated Remote Proxy X.X.X.X, Local Proxy Y.Y.Y.Y&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:49Z: %FTD-vpn-7-713906: Group = X.X.X.X, IP = X.X.X.X, sending delete/delete with reason message&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:49Z: %FTD-vpn-7-715046: Group = X.X.X.X, IP = X.X.X.X, constructing blank hash payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:49Z: %FTD-vpn-7-715046: Group = X.X.X.X, IP = X.X.X.X, constructing IPSec delete payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:49Z: %FTD-vpn-7-715046: Group = X.X.X.X, IP = X.X.X.X, constructing qm hash payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:49Z: %FTD-vpn-7-713236: IP = X.X.X.X, IKE_DECODE SENDING Message (msgid=25456395) with payloads : HDR + HASH (8) + DELETE (12) + NONE (0) total length : 68&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:49Z: %FTD-vpn-7-715009: Group = X.X.X.X, IP = X.X.X.X, IKE Deleting SA: Remote Proxy X.X.X.X, Local Proxy Y.Y.Y.Y&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;163&amp;gt;:2023-03-22T15:10:49Z: %FTD-vpn-3-713902: Group = X.X.X.X, IP = X.X.X.X, Removing peer from correlator table failed, no match!&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:49Z: %FTD-vpn-7-713906: Group = X.X.X.X, IP = X.X.X.X, IKE SA MM:4aca0c69 rcv'd Terminate: state MM_ACTIVE flags 0x00000062, refcnt 1, tuncnt 0&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:49Z: %FTD-vpn-7-713906: Group = X.X.X.X, IP = X.X.X.X, Remove from IKEv1 Tunnel Table succeeded for SA with logicalId 5033984&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:49Z: %FTD-vpn-7-713906: Group = X.X.X.X, IP = X.X.X.X, Remove from IKEv1 MIB Table succeeded for SA with logical ID 5033984&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:49Z: %FTD-vpn-7-713906: Group = X.X.X.X, IP = X.X.X.X, IKE SA MM:4aca0c69 terminating: flags 0x01000022, refcnt 0, tuncnt 0&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:49Z: %FTD-vpn-7-713906: Group = X.X.X.X, IP = X.X.X.X, sending delete/delete with reason message&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;164&amp;gt;:2023-03-22T15:10:49Z: %FTD-vpn-4-752012: IKEv1 was unsuccessful at setting up a tunnel. Map Tag = CSM_outsite_map. Map Sequence Number = 2.&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;163&amp;gt;:2023-03-22T15:10:49Z: %FTD-vpn-3-752015: Tunnel Manager has failed to establish an L2L SA. All configured IKE versions failed to establish the tunnel. Map Tag= CSM_outsite_map. Map Sequence Number = 2.&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:49Z: %FTD-vpn-7-752002: Tunnel Manager Removed entry. Map Tag = CSM_outsite_map. Map Sequence Number = 2.&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:49Z: %FTD-vpn-7-715046: Group = X.X.X.X, IP = X.X.X.X, constructing blank hash payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:49Z: %FTD-vpn-7-715046: Group = X.X.X.X, IP = X.X.X.X, constructing IKE delete payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:49Z: %FTD-vpn-7-715046: Group = X.X.X.X, IP = X.X.X.X, constructing qm hash payload&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:49Z: %FTD-vpn-7-713236: IP = X.X.X.X, IKE_DECODE SENDING Message (msgid=f27b7ff1) with payloads : HDR + HASH (8) + DELETE (12) + NONE (0) total length : 80&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:49Z: %FTD-vpn-7-715077: Pitcher: received key delete msg, spi 0x3693a6b9&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;165&amp;gt;:2023-03-22T15:10:49Z: %FTD-vpn-5-713259: Group = X.X.X.X, IP = X.X.X.X, Session is being torn down. Reason: Unknown&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;164&amp;gt;:2023-03-22T15:10:49Z: %FTD-auth-4-113019: Group = X.X.X.X, Username = X.X.X.X, IP = X.X.X.X, Session disconnected. Session Type: LAN-to-LAN, Duration: 0h:00m:30s, Bytes xmt: 0, Bytes rcv: 0, Reason: Unknown&lt;/DIV&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV class=""&gt;&amp;lt;167&amp;gt;:2023-03-22T15:10:49Z: %FTD-vpn-7-713906: Ignoring msg to mark SA with dsID 5033984 dead because SA deleted&lt;/DIV&gt;&lt;/LI&gt;&lt;/OL&gt;</description>
      <pubDate>Wed, 22 Mar 2023 16:35:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/fmc-fdt-site-to-site-vpn/m-p/4799495#M1098903</guid>
      <dc:creator>edp-adm</dc:creator>
      <dc:date>2023-03-22T16:35:57Z</dc:date>
    </item>
  </channel>
</rss>

