09-30-2013 09:35 AM - edited 03-11-2019 07:45 PM
Dear Colleagues
Please suggest the missing configuration- ASA 5525, 9.1 sw
I am getting below syslog, with debug crypto isakmp
Sep 30 16:17:47 [IKEv1]Group = defaultragroup, Username = myvpn, IP = 213.133.216.168, QM FSM error (P2 struct &0x00007ffecc8423a0, mess id 0x8f389b93)!
Sep 30 16:17:47 [IKEv1]Group = defaultragroup, Username = myvpn, IP = 213.133.216.168, Removing peer from correlator table failed, no match!
Sep 30 16:17:47 [IKEv1]Group = defaultragroup, Username = myvpn, IP = 213.133.216.168, Session is being torn down. Reason: Phase 2 Mismatch
I am attaching
sh run tunnel-group
sh run crypto map
and sh run,
My Access VPN group Policy is defaultragroup
local username is myvpn
ip pool 10.200.41.1-10.200.41.14
Solved! Go to Solution.
09-30-2013 10:28 AM
Hi,
You could try adding
crypto dynamic-map RAVPNmap 65534 set ikev1 transform-set ESP-3DES-SHA ESP-3DES-MD5
Though I am not sure why there are multiple "dynamic-map" configuration on your ASA to begin with.
- Jouni
09-30-2013 10:28 AM
Hi,
You could try adding
crypto dynamic-map RAVPNmap 65534 set ikev1 transform-set ESP-3DES-SHA ESP-3DES-MD5
Though I am not sure why there are multiple "dynamic-map" configuration on your ASA to begin with.
- Jouni
10-01-2013 08:30 AM
hello
i found the problem and fix it, thanks for reply
09-13-2022 03:50 PM
Hello Abhishek,
Can you please share the solution?
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide