05-16-2020 12:13 PM - edited 05-25-2020 11:12 AM
Hi
i have configured the VAN ASA to ASA allowing port 443 only but the tunnel not up
please see the attached files and advise me
thanks
IKE Proposal Parameters | |
Key Exchange | IKE V2 |
Authentication Mode: | Preshared keys |
Preshared Key: | will be shared |
Hash Algorithm: | SHA256 |
Encryption Algorithm: | AES 256 |
Diffie-Hellman Group: | Group 21 |
Lifetime: | 28800 |
IPSEC Parameters | |
SA Negotiation | ESP |
Hash Algorithm: | SHA256 |
Encryption Algorithm: | AES 256 |
Lifetime: | 3600 sec |
Solved! Go to Solution.
05-16-2020 02:21 PM
05-16-2020 12:27 PM
05-16-2020 02:08 PM
hi
this the ACL
access-list site-server_AClist extended permit ip host 192.168.100.100 255.255.255.255 host 10.220.4.100 255.255.255.248
Phase: 8
Type: VPN
Subtype: encrypt
Result: DROP
Config:
Additional Information:
Result:
input-interface: inside
input-status: up
input-line-status: up
output-interface: outside
output-status: up
output-line-status: up
Action: drop
Drop-reason: (acl-drop) Flow is denied by configured rule
Please see the attached debug file
05-16-2020 02:21 PM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide