<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Hi, in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cisco-asa-tunnel-with-fortinet-dial-up/m-p/2897572#M157946</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;What is the status of the sh crypto ikev1 &lt;G class="gr_ gr_48 gr-alert gr_spell gr_run_anim ContextualSpelling ins-del multiReplace" id="48" data-gr-id="48"&gt;sa&lt;/G&gt;&amp;nbsp;for this tunnel ?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Is is stuck at&amp;nbsp;&lt;SPAN&gt;MM_WAIT_MSG5 ?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;If yes then check the pre-shared key on both the devices and also make sure if &lt;G class="gr_ gr_142 gr-alert gr_spell gr_run_anim ContextualSpelling ins-del multiReplace" id="142" data-gr-id="142"&gt;udp&lt;/G&gt; 4500 is not blocked in the path ?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Regards,&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Aditya&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Please rate helpful posts.&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Mon, 25 Apr 2016 06:20:40 GMT</pubDate>
    <dc:creator>Aditya Ganjoo</dc:creator>
    <dc:date>2016-04-25T06:20:40Z</dc:date>
    <item>
      <title>Cisco ASA Tunnel with FortiNet Dial UP</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-tunnel-with-fortinet-dial-up/m-p/2897566#M157917</link>
      <description>&lt;P&gt;Dear Cisco Team,&lt;/P&gt;
&lt;P&gt;I have FortiNet without Real static IP and need to Dial UP VPN to our Cisco ASA 5525 V9 with Real Static IP so How can we do that?&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 07:39:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-tunnel-with-fortinet-dial-up/m-p/2897566#M157917</guid>
      <dc:creator>Amr Ibrahim Ali Henedi</dc:creator>
      <dc:date>2019-03-12T07:39:40Z</dc:date>
    </item>
    <item>
      <title>any update?</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-tunnel-with-fortinet-dial-up/m-p/2897567#M157919</link>
      <description>&lt;P&gt;any update?&lt;/P&gt;
&lt;P&gt;it's very urgent case and should be solved quickly so please your usual support is highly appreciated.&lt;/P&gt;</description>
      <pubDate>Sun, 24 Apr 2016 11:25:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-tunnel-with-fortinet-dial-up/m-p/2897567#M157919</guid>
      <dc:creator>Amr Ibrahim Ali Henedi</dc:creator>
      <dc:date>2016-04-24T11:25:18Z</dc:date>
    </item>
    <item>
      <title>Hi,</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-tunnel-with-fortinet-dial-up/m-p/2897568#M157922</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Please check the following links to configure dynamic L2l Vpn on Cisco ASA:&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;https://supportforums.cisco.com/discussion/11084776/cisco-asa-and-fortigate-dynamic-l2l-vpn-setup&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Aditya&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Please rate helpful posts and mark correct answers.&lt;/P&gt;</description>
      <pubDate>Sun, 24 Apr 2016 11:36:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-tunnel-with-fortinet-dial-up/m-p/2897568#M157922</guid>
      <dc:creator>Aditya Ganjoo</dc:creator>
      <dc:date>2016-04-24T11:36:15Z</dc:date>
    </item>
    <item>
      <title>dear Aditya,</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-tunnel-with-fortinet-dial-up/m-p/2897569#M157924</link>
      <description>&lt;P&gt;dear Aditya,&lt;/P&gt;
&lt;P&gt;thank you for your support , I need configuration of the ASA V9 not Pix so please advise.&lt;/P&gt;</description>
      <pubDate>Sun, 24 Apr 2016 12:43:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-tunnel-with-fortinet-dial-up/m-p/2897569#M157924</guid>
      <dc:creator>Amr Ibrahim Ali Henedi</dc:creator>
      <dc:date>2016-04-24T12:43:17Z</dc:date>
    </item>
    <item>
      <title>Any update?</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-tunnel-with-fortinet-dial-up/m-p/2897570#M157927</link>
      <description>&lt;P&gt;Any update?&lt;/P&gt;
&lt;P&gt;it's critical case for me so please support me.&lt;/P&gt;</description>
      <pubDate>Sun, 24 Apr 2016 14:09:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-tunnel-with-fortinet-dial-up/m-p/2897570#M157927</guid>
      <dc:creator>Amr Ibrahim Ali Henedi</dc:creator>
      <dc:date>2016-04-24T14:09:42Z</dc:date>
    </item>
    <item>
      <title>Dear Cisco Team,</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-tunnel-with-fortinet-dial-up/m-p/2897571#M157933</link>
      <description>&lt;P&gt;Dear Cisco Team,&lt;/P&gt;
&lt;P&gt;I tried this configuration&lt;/P&gt;
&lt;P&gt;crypto map outsideBGP_map 500 ipsec-isakmp dynamic Talabatvpn&lt;/P&gt;
&lt;P&gt;crypto dynamic-map Talbatvpn 1 set ikev1 transform-set ESP-3DES-SHA&lt;BR /&gt;crypto dynamic-map Talbatvpn 1 set reverse-route&lt;/P&gt;
&lt;P&gt;tunnel-group DefaultL2LGroup type ipsec-l2l&lt;BR /&gt;tunnel-group DefaultL2LGroup ipsec-attributes&lt;BR /&gt;&amp;nbsp;pre-shared-key *&lt;BR /&gt;object-group network Talbat2&lt;BR /&gt;&amp;nbsp;network-object 192.168.4.0 255.255.255.0&lt;/P&gt;
&lt;P&gt;object-group network RCCTalbat&lt;BR /&gt;&amp;nbsp;network-object 10.13.1.0 255.255.255.0&lt;/P&gt;
&lt;P&gt;access-list acl_inside extended permit ip object-group RCCTalbat object-group Talbat2&lt;BR /&gt;nat (Inside,outsideBGP) source static RCCTalbat RCCTalbat destination static Talbat2 Talbat2&lt;BR /&gt;access-list 500 extended permit ip object-group RCCTalbat object-group Talbat2&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;but give me these logs&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Apr 24 17:25:54 [IKEv1]Group = DefaultL2LGroup, IP = 62.215.108.121, Duplicate Phase 1 packet detected.&amp;nbsp; Retransmitting last packet.&lt;BR /&gt;Apr 24 17:25:54 [IKEv1]Group = DefaultL2LGroup, IP = 62.215.108.121, P1 Retransmit msg dispatched to MM FSM&lt;/P&gt;
&lt;P&gt;Apr 24 17:26:02 [IKEv1 DEBUG]Group = DefaultL2LGroup, IP = 62.215.108.121, IKE MM Responder FSM error history (struct &amp;amp;0x00007fff75625d90)&amp;nbsp; &amp;lt;state&amp;gt;, &amp;lt;event&amp;gt;:&amp;nbsp; MM_DONE, EV_ERROR--&amp;gt;MM_WAIT_MSG5, EV_PROB_AUTH_FAIL--&amp;gt;MM_WAIT_MSG5, EV_TIMEOUT--&amp;gt;MM_WAIT_MSG5, NullEvent--&amp;gt;MM_SND_MSG4, EV_CRYPTO_ACTIVE--&amp;gt;MM_SND_MSG4, EV_SND_MSG--&amp;gt;MM_SND_MSG4, EV_START_TMR--&amp;gt;MM_SND_MSG4, EV_RESEND_MSG&lt;BR /&gt;Apr 24 17:26:02 [IKEv1 DEBUG]Group = DefaultL2LGroup, IP = 62.215.108.121, IKE SA MM:d52b7673 terminating:&amp;nbsp; flags 0x01000002, refcnt 0, tuncnt 0&lt;BR /&gt;Apr 24 17:26:02 [IKEv1 DEBUG]Group = DefaultL2LGroup, IP = 62.215.108.121, sending delete/delete with reason message&lt;BR /&gt;Apr 24 17:26:02 [IKEv1 DEBUG]Group = DefaultL2LGroup, IP = 62.215.108.121, constructing blank hash payload&lt;BR /&gt;Apr 24 17:26:02 [IKEv1 DEBUG]Group = DefaultL2LGroup, IP = 62.215.108.121, constructing IKE delete payload&lt;BR /&gt;Apr 24 17:26:02 [IKEv1 DEBUG]Group = DefaultL2LGroup, IP = 62.215.108.121, constructing qm hash payload&lt;BR /&gt;Apr 24 17:26:02 [IKEv1]IP = 62.215.108.121, IKE_DECODE SENDING Message (msgid=872680aa) with payloads : HDR + HASH (8) + DELETE (12) + NONE (0) total length : 76&lt;/P&gt;
&lt;P&gt;please advise?&lt;/P&gt;</description>
      <pubDate>Sun, 24 Apr 2016 18:02:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-tunnel-with-fortinet-dial-up/m-p/2897571#M157933</guid>
      <dc:creator>Amr Ibrahim Ali Henedi</dc:creator>
      <dc:date>2016-04-24T18:02:30Z</dc:date>
    </item>
    <item>
      <title>Hi,</title>
      <link>https://community.cisco.com/t5/network-security/cisco-asa-tunnel-with-fortinet-dial-up/m-p/2897572#M157946</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;What is the status of the sh crypto ikev1 &lt;G class="gr_ gr_48 gr-alert gr_spell gr_run_anim ContextualSpelling ins-del multiReplace" id="48" data-gr-id="48"&gt;sa&lt;/G&gt;&amp;nbsp;for this tunnel ?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Is is stuck at&amp;nbsp;&lt;SPAN&gt;MM_WAIT_MSG5 ?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;If yes then check the pre-shared key on both the devices and also make sure if &lt;G class="gr_ gr_142 gr-alert gr_spell gr_run_anim ContextualSpelling ins-del multiReplace" id="142" data-gr-id="142"&gt;udp&lt;/G&gt; 4500 is not blocked in the path ?&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Regards,&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Aditya&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Please rate helpful posts.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 25 Apr 2016 06:20:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-asa-tunnel-with-fortinet-dial-up/m-p/2897572#M157946</guid>
      <dc:creator>Aditya Ganjoo</dc:creator>
      <dc:date>2016-04-25T06:20:40Z</dc:date>
    </item>
  </channel>
</rss>

