cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
3863
Views
0
Helpful
1
Replies

Error Message : Drop-reason: (ipsec-spoof) IPSEC Spoof detected

pcclonescisco
Level 1
Level 1

Hi,

When i run a Packet tracer in PIX, getting a below output:

Result:

input-interface: outside_interface

input-status: up

input-line-status: up

output-interface: mpls_interface

output-status: up

output-line-status: up

Action: drop

Drop-reason: (ipsec-spoof) IPSEC Spoof detected

Please help me to fix this issue.

1 Reply 1

Jouni Forss
VIP Alumni
VIP Alumni

Hi,

To my understanding you are trying to emulate VPN/Encrypted traffic from the PIX firewalls outside interface and therefore the PIX drops the traffic (because its supposed to be encrypted traffic arriving on a VPN connection to the PIX)

If you are testing a L2L VPN connection on the PIX, do the test in the other direction. From IN -> OUT

This should already bring the VPN tunnel up even though no actual traffic is generated to the tunnel.

- Jouni

Review Cisco Networking for a $25 gift card