12-04-2018 08:10 AM - edited 03-12-2019 05:32 AM
We recently purchased a security license our Cisco 2901 router. The GRE tunnel using 3des I have created using the new license is showing up/down. I’ve confirmed the tunnel has the same configuration on both ends and that it is configured like all 15 other tunnels at our other sites, but I’m getting the following debug errors. There are no NATs or PATs being used on the routers or between the tunnel interfaces. Any assistance or direction would be greatly appreciated.
*Dec 3 23:30:34.664: ISAKMP-ERROR: (0):deleting SA reason "Death by retransmission P1" state (I) MM_NO_STATE (peer xx.xxx.xxx.xx) *Dec 3 23:30:34.664: ISAKMP-ERROR: (0):deleting SA reason "Death by retransmission P1" state (I) MM_NO_STATE (peer xx.xxx.xxx.xx) no debug *Dec 3 23:31:03.552: ISAKMP-ERROR: (0):SA is still budding. Attached new ipsec request to it. (local xx.xxx.xxx.xx, remote xx.xxx.xxx.xx) *Dec 3 23:31:03.552: ISAKMP-ERROR: (0):Error while processing SA request: Failed to initialize SA *Dec 3 23:31:03.552: ISAKMP-ERROR: (0):Error while processing KMI message 0, error 2.crypto *Dec 3 23:31:05.088: ISAKMP-ERROR: (0):SA is still budding. Attached new ipsec request to it. (local xx.xxx.xxx.xx, remote xx.xxx.xxx.xx) *Dec 3 23:31:05.088: ISAKMP-ERROR: (0):Error while processing SA request: Failed to initialize SA *Dec 3 23:31:05.088: ISAKMP-ERROR: (0):Error while processing KMI mess B62RTR# B62RTR# *Dec 3 23:31:33.552: ISAKMP-ERROR: (0):deleting SA reason "Death by retransmission P1" state (I) MM_NO_STATE (peer xx.xxx.xxx.xx)
Thanks,
12-04-2018 08:48 AM
12-04-2018 09:54 AM
12-04-2018 10:05 AM
12-04-2018 10:19 AM
12-04-2018 10:28 AM
12-05-2018 04:30 AM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide