cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1242
Views
0
Helpful
3
Replies

VPN tunnel does not traffic

seckka21
Level 1
Level 1

Hello
I created a site to site tunnel. The vpn is up but the truffic does not pass. Attached the logs found.

Cordially

3 Replies 3

balaji.bandi
Hall of Fame
Hall of Fame
5|Oct 19 2021|08:35:06|713068|||||Group = 10.8.63.100, IP = 10.8.63.100, Received non-routine Notify message: No proposal chosen (14)
5|Oct 19 2021|08:35:06|713068|||||Group = 10.8.63.100, IP = 10.8.63.100, Received non-routine Notify message: No proposal chosen (14)
3|Oct 19 2021|08:35:06|713902|||||Group = 10.8.63.100, IP = 10.8.63.100, Removing peer from correlator table failed, no match!
3|Oct 19 2021|08:35:06|713902|||||Group = 10.8.63.100, IP = 10.8.63.100, Removing peer from correlator table failed, no match!
3|Oct 19 2021|08:35:06|713902|||||Group = 10.8.63.100, IP = 10.8.63.100, QM FSM error (P2 struct &0x00007fff3378d850, mess id 0x921abc98)!
3|Oct 19 2021|08:35:06|713902|||||Group = 10.8.63.100, IP = 10.8.63.100, QM FSM error (P2 struct &0x00007fff3378d850, mess id 0x921abc98)!
5|Oct 19 2021|08:35:06|713904|||||Group = 10.8.63.100, IP = 10.8.63.100, All IPSec SA proposals found unacceptable!
5|Oct 19 2021|08:35:06|713904|||||Group = 10.8.63.100, IP = 10.8.63.100, All IPSec SA proposals found unacceptable!

I would cross check both the side config once again, this could be  - encryption settings are the same on both the side also check the crypto acls.

 

can you tell us the device participated in the VPN ?

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

In my side i have a 5525 in the another side they have a 5520

I would cross check both the side config once again, this could be - encryption settings are the same on both the side also check the crypto acls.

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Review Cisco Networking products for a $25 gift card