cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
643
Views
0
Helpful
2
Replies

VPN Problem - Send Errors incrementing no phase 2 negotiation

kevinhobson2000
Level 1
Level 1

Hi,

I have an issue were there is no phase 2 being negotiated for a specific subnet. I have checked that the policys match on the ipsec config which they do and timers etc. Everything looks ok but the router refuses to encrypt any traffic even though it is hitting the ACL. The incrementing errors definately point to a Phase negotiatiation issue.

Please find Debug, router config and sh ipsec sa for the problem subnet attached.

Cheers

Kev

2 Replies 2

kevinhobson2000
Level 1
Level 1

Attached.

Resolved this with more specific subnets in the encryption domain.

Sorted.

Review Cisco Networking for a $25 gift card