@whitby.charles check PFS is or is not enabled on both peer devices, align the configuration.
Make sure both devices can be both the initiator and receiver.
Please provide the errors for review.
FYI, use AES instead of 3DES, ideally SHA2 and DH group 14, 19, 20, 21 or anything stronger than 2. On newer Cisco releases these older weaker algorithms have been depreciated as they are weaker and insecure.