<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ASA L2TP/IPSec issue with windows client in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-l2tp-ipsec-issue-with-windows-client/m-p/3811137#M6751</link>
    <description>&lt;P&gt;Sorry about the wait. In my notes I have this:&lt;/P&gt;&lt;P&gt;Shrew VPN Config:&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;&lt;SPAN&gt;IP&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;Authentication Mutual PSK + Xauth&lt;/SPAN&gt;&lt;/LI&gt;&lt;OL&gt;&lt;LI&gt;&lt;SPAN&gt;Local Identity &amp;gt; FQDN &amp;gt; String is the connection tunnel&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;Credentials &amp;gt; Pre Shared Key &amp;gt; Add the PSK of the VPN tunnel&lt;/SPAN&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;/OL&gt;</description>
    <pubDate>Wed, 27 Feb 2019 18:54:55 GMT</pubDate>
    <dc:creator>LaFerrari</dc:creator>
    <dc:date>2019-02-27T18:54:55Z</dc:date>
    <item>
      <title>ASA L2TP/IPSec issue with windows client</title>
      <link>https://community.cisco.com/t5/network-security/asa-l2tp-ipsec-issue-with-windows-client/m-p/3809901#M6742</link>
      <description>&lt;P&gt;Configuration on ASA 5506 and windows 10 client is pretty standard but the debug shows that the session drops after completing phase 2&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;What could be the issue? I have tried all registry fix as suggested on other discussions but it didn't help. Below is the debug output.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Feb 26 15:41:39 [IKEv1]Group = DefaultRAGroup, IP = &amp;lt;client ip&amp;gt;, PHASE 2 COMPLETED (msgid=00000001)&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Feb 26 15:42:14 [IKEv1]IP = &amp;lt;client ip&amp;gt;, IKE_DECODE RECEIVED Message (msgid=d2c7e844) with payloads : HDR + HASH (8) + DELETE (12) + NONE (0) total length : 80&lt;BR /&gt;Feb 26 15:42:14 [IKEv1 DEBUG]Group = DefaultRAGroup, IP = &amp;lt;client ip&amp;gt;, processing hash payload&lt;BR /&gt;Feb 26 15:42:14 [IKEv1 DEBUG]Group = DefaultRAGroup, IP = &amp;lt;client ip&amp;gt;, processing delete&lt;BR /&gt;&lt;STRONG&gt;Feb 26 15:42:14 [IKEv1]Group = DefaultRAGroup, IP = &amp;lt;client ip&amp;gt;, Connection terminated for peer . Reason: Peer Terminate Remote Proxy 0.0.0.0, Local Proxy 0.0.0.0&lt;/STRONG&gt;&lt;BR /&gt;Feb 26 15:42:14 [IKEv1 DEBUG]Group = DefaultRAGroup, IP = &amp;lt;client ip&amp;gt;, Active unit receives a delete event for remote peer &amp;lt;client ip&amp;gt;.&lt;/P&gt;
&lt;P&gt;Feb 26 15:42:14 [IKEv1]Group = DefaultRAGroup, IP = &amp;lt;client ip&amp;gt;, Remove from IKEv1 Tunnel Table succeeded for SA with logicalId 389120&lt;BR /&gt;Feb 26 15:42:14 [IKEv1]Group = DefaultRAGroup, IP = &amp;lt;client ip&amp;gt;, Remove from IKEv1 MIB Table succeeded for SA with logical ID 389120&lt;BR /&gt;Feb 26 15:42:14 [IKEv1 DEBUG]Group = DefaultRAGroup, IP = &amp;lt;client ip&amp;gt;, IKE Deleting SA: Remote Proxy &amp;lt;client ip&amp;gt;, Local Proxy &amp;lt;ASA IP&amp;gt;&lt;BR /&gt;Feb 26 15:42:14 [IKEv1]MSG_FSM_QM lookup failed (handle 1)!&lt;BR /&gt;Feb 26 15:42:14 [IKEv1 DEBUG]Group = DefaultRAGroup, IP = &amp;lt;client ip&amp;gt;, IKE SA MM:83dac607 terminating: flags 0x01000802, refcnt 0, tuncnt 0&lt;BR /&gt;&lt;STRONG&gt;Feb 26 15:42:14 [IKEv1]Group = DefaultRAGroup, IP = &amp;lt;client ip&amp;gt;, Session is being torn down. Reason: User Requested&lt;/STRONG&gt;&lt;BR /&gt;Feb 26 15:42:14 [IKEv1]Ignoring msg to mark SA with dsID 389120 dead because SA deleted&lt;BR /&gt;Feb 26 15:42:14 [IKEv1 DEBUG]Pitcher: received key delete msg, spi 0xdcaca6e5&lt;BR /&gt;Feb 26 15:42:14 [IKEv1 DEBUG]Pitcher: received key delete msg, spi 0xdcaca6e5&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Please note that there is no manual request from user to terminate the session.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 16:52:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-l2tp-ipsec-issue-with-windows-client/m-p/3809901#M6742</guid>
      <dc:creator>razzaque003</dc:creator>
      <dc:date>2020-02-21T16:52:02Z</dc:date>
    </item>
    <item>
      <title>Re: ASA L2TP/IPSec issue with windows client</title>
      <link>https://community.cisco.com/t5/network-security/asa-l2tp-ipsec-issue-with-windows-client/m-p/3809907#M6744</link>
      <description>Windows 10 fails to connect to the VPN. Message given is "The network connection between your computer and the VPN server could not be established because the remote server is not responding. This could be because one of the network devices between you and the remote server is not configured to allow VPN connections. This is Error 809 (NAT-T)&lt;BR /&gt;Tried all fixes for this error from windows side but nothing worked.</description>
      <pubDate>Tue, 26 Feb 2019 13:36:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-l2tp-ipsec-issue-with-windows-client/m-p/3809907#M6744</guid>
      <dc:creator>razzaque003</dc:creator>
      <dc:date>2019-02-26T13:36:06Z</dc:date>
    </item>
    <item>
      <title>Re: ASA L2TP/IPSec issue with windows client</title>
      <link>https://community.cisco.com/t5/network-security/asa-l2tp-ipsec-issue-with-windows-client/m-p/3810322#M6746</link>
      <description>&lt;P&gt;What happens if you use a different client like the shrew client? I had problems with an IPSec IKEv1 tunnel the other day and used shew and had to set it for a psk and xauth and then I got my tunnel working.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 26 Feb 2019 20:25:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-l2tp-ipsec-issue-with-windows-client/m-p/3810322#M6746</guid>
      <dc:creator>LaFerrari</dc:creator>
      <dc:date>2019-02-26T20:25:28Z</dc:date>
    </item>
    <item>
      <title>Re: ASA L2TP/IPSec issue with windows client</title>
      <link>https://community.cisco.com/t5/network-security/asa-l2tp-ipsec-issue-with-windows-client/m-p/3810561#M6749</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;I tried using shew client. Can you please send me the settings of this client? I tried but it gives different errors with different settings.&lt;/P&gt;</description>
      <pubDate>Wed, 27 Feb 2019 06:43:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-l2tp-ipsec-issue-with-windows-client/m-p/3810561#M6749</guid>
      <dc:creator>razzaque003</dc:creator>
      <dc:date>2019-02-27T06:43:34Z</dc:date>
    </item>
    <item>
      <title>Re: ASA L2TP/IPSec issue with windows client</title>
      <link>https://community.cisco.com/t5/network-security/asa-l2tp-ipsec-issue-with-windows-client/m-p/3811137#M6751</link>
      <description>&lt;P&gt;Sorry about the wait. In my notes I have this:&lt;/P&gt;&lt;P&gt;Shrew VPN Config:&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;&lt;SPAN&gt;IP&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;Authentication Mutual PSK + Xauth&lt;/SPAN&gt;&lt;/LI&gt;&lt;OL&gt;&lt;LI&gt;&lt;SPAN&gt;Local Identity &amp;gt; FQDN &amp;gt; String is the connection tunnel&lt;/SPAN&gt;&lt;/LI&gt;&lt;LI&gt;&lt;SPAN&gt;Credentials &amp;gt; Pre Shared Key &amp;gt; Add the PSK of the VPN tunnel&lt;/SPAN&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;/OL&gt;</description>
      <pubDate>Wed, 27 Feb 2019 18:54:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-l2tp-ipsec-issue-with-windows-client/m-p/3811137#M6751</guid>
      <dc:creator>LaFerrari</dc:creator>
      <dc:date>2019-02-27T18:54:55Z</dc:date>
    </item>
  </channel>
</rss>

