cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
371
Views
0
Helpful
1
Replies

Possible bug in PIX ver. 6.3.3??

jhenningsson
Level 1
Level 1

Hi!

After upgrading a PIX 501 from ver 6.2.2 to the latest software (6.3.3) my vpntunnel to a VPN 3005 won´t go up again. (I use "Base Group" in the Concentrator.)

The following shows in the VPN 3005 log. But I don´t

understand what to do.

If I "downgrade" back to ver 6.2.2 the tunnel goes up again.

11061 10/20/2003 15:41:27.850 SEV=4 IKE/127 RPT=9

xx.xx.xx.xx

Group [VPNC_Base_Group]

Xauth required but selected Proposal does not support xauth,

Check priorities of ike xauth proposals in ike proposal list

11064 10/20/2003 15:41:27.850 SEV=4 IKEDBG/65 RPT=20 xx.xx.xx.xx

Group [VPNC_Base_Group]

IKE MM Responder FSM error history (struct &0x1ddee1c)

<state>, <event>:

MM_DONE, EV_ERROR

MM_BLD_MSG6, EV_CHK_PROPOSAL

MM_BLD_MSG6, EV_TEST_CERT

MM_BLD_MSG6, EV_GET_PFS

Anyone experienced this?

Thanks in advanced

Best regards

Johan Henningsson

1 Reply 1

umedryk
Level 5
Level 5

This event generally means that the concentrator and the remote peer are out of sync; as far as I know, there is no such caveat.

Review Cisco Networking for a $25 gift card