02-07-2019 10:59 AM - edited 02-21-2020 09:33 PM
I recently zeroized my keys and generated new ones. I've been looking at where to delete the old, cached key in AnyConnect, but I can't find it anywhere. I uninstalled the application and deleted remnant folders. I stopped and restarted the service. It still gives me an error whenever I connect:
Unknown IKEv2 Negotiation abored due to ERROR: The Peer's KE payload contained the wrong DH group
Unknown IKEv2 Negotiation abored due to ERROR: Failed to locate an item in the database
Log file from ASDM is attached, but it's formatted weirdly.
Thanks.
Solved! Go to Solution.
02-08-2019 06:15 AM
Found the issue: I didn't have a certificate on the ASA.
Resolution via ASDM is to navigate to: Device Management > Certificate Management > Identity certificate. I added one through there and was able to log in through AnyConnect again.
02-08-2019 06:15 AM
Found the issue: I didn't have a certificate on the ASA.
Resolution via ASDM is to navigate to: Device Management > Certificate Management > Identity certificate. I added one through there and was able to log in through AnyConnect again.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide