09-09-2008 11:17 PM - edited 03-11-2019 06:42 AM
Hi,
I have an issue were there is no phase 2 being negotiated for a specific subnet. I have checked that the policys match on the ipsec config which they do and timers etc. Everything looks ok but the router refuses to encrypt any traffic even though it is hitting the ACL. The incrementing errors definately point to a Phase negotiatiation issue.
Please find Debug, router config and sh ipsec sa for the problem subnet attached.
Cheers
Kev
09-09-2008 11:18 PM
09-10-2008 12:19 AM
Resolved this with more specific subnets in the encryption domain.
Sorted.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide