cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
796
Views
0
Helpful
2
Replies

GetVPN GMs not finding KS via alternative interfaces.

ggalteroo
Level 1
Level 1

Hello

The registration with the KS is ok during normal operation but when a topology change occurs, the GM is unable to start GDOI because the interface is down, for instance. The crypto map is applied to a second interface and we have reachability from loopback to loopback. The message I get is

%CRYPTO-4-GM_REGSTER_IF_DOWN: Can't start GDOI registeration as interface FastEthernet0/1 is down

If I remove the crypto map from the first interface, the whole process starts and I get registered right away. It does not run while the crypto map is on both interfaces.

Do you know what might be happening?

Thanks a lot!

Guido

2 Replies 2

htarra
Level 4
Level 4

You are hitting the bug ID CSCtb26955.

Thanks!

A TAC case recently closed pointed to bug CSCtb13421. The release 12.4(15)T12 solved the problem.

Thanks again!

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: