05-10-2022 05:36 AM
We are trying to setup a site to site VPN with AWS so we can connect both networks to speak to VM's in the cloud. AWS has a feature where it can generate the configs based on the type of firewall, however even though i have matched the phase 1 and 2 configs on the FTDv(version 7.1),
We tried using both Ikev1 and Ikev2, however the tunnel has not formed. In the logs or debugs i am not even seeing traffic passing, does anyone have any experience with this?
05-10-2022 05:53 AM
I could not see the attachment. Did you properly serup the "VPN Traffic of Interest" on both sides and tried to ping to one side to another. sometimes the tunnel need traffic for force come up.
05-10-2022 07:48 AM
Correct, i had a continuous ping running from an endpoint on the FTDv side, however still no tunnel being formed. As i don't have full control over the AWS end i can't advise the vendor of what he can or cannot do.
05-11-2022 01:54 AM
Is the remote side is configured for vpn? could you share the logs what you see.
could you share the logs for the FTDv with us so it will give us to help you what issue could be occurring/causing.
06-06-2022 12:04 AM
check the below if it helps you.
There are multiple steps to perform from the AWS site if everyone thinks ok. FTD.
https://aws.amazon.com/premiumsupport/knowledge-center/vpn-tunnel-troubleshooting/
https://aws.amazon.com/premiumsupport/knowledge-center/vpn-tunnel-phase-1-ike/
https://www.youtube.com/watch?v=NtDt34_tXCI
Thanks,
Jitendra
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide