04-18-2020 12:40 AM
Hello Guys,
I am unable to contact cisco router and Firewall. getting error: %CRYPTO-4-RECVD_PKT_NOT_IPSEC: Rec'd packet not an IPSEC packet. (ip) vrf/dest_addr= /160.1.1.1, src_addr= 150.1.1.1, prot= 1.
I saw packets are not getting decrypted....
Below are ISAKMP and IPSEC configuration:
vIOS-PK-02#show crypto isakmp sa
IPv4 Crypto ISAKMP SA
dst src state conn-id status
136.1.122.2 136.1.122.12 QM_IDLE 1009 ACTIVE
04-18-2020 01:09 AM
- Check this document for guidelines as how to configure vpn between the router and checkpoint :
https://www.cisco.com/c/en/us/support/docs/security/ios-easy-vpn/23784-ipsec-checkpt.html
M.
04-18-2020 03:05 AM
@Naiveit looks like your router is encrypting the traffic...
#pkts encaps: 4, #pkts encrypt: 4, #pkts digest: 4
#pkts decaps: 0, #pkts decrypt: 0, #pkts verify: 0
...but nothing is being decrypted.
Can you check the configuration of the remote CheckPoint firewall and confirm they are not unintentially natting the traffic.
HTH
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide