cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
470
Views
10
Helpful
2
Replies

IPSec

abdul.qadir5001
Level 1
Level 1

In IPSec Tunnel phase 1 is up and phase 2 is not up then whats the issue of it. Thanks

2 Replies 2

Hello,

 

phase 2 usually means a problem with the IPSec SA parameters. Do you have a debug output, or better yet, the configs of both sides ?

Please check the phase two configurations. If you have similar properties configured in both the tunnel end point. 

 

crypto ipsec configuration like hashing is same and if modes are same like tunnel and transport. 

 

Make sure no deny of IP protocol number 50 and 51. 

Please do not hesitate to click the STAR button if you are satisfied with my answer.
Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card