one of my IKEv2 tunnels is stuck in up/down but the other one is up/up and working. Can someone help me fix this? See configs and debugs below. IP addresses have been modified but hopefully you can still follow.
Solved! Go to Solution.
You have not specified which specific tunnel is down.
However, there is authentication issue for one which is taking one of this "down". Please refer the following link for further troubleshooting & provide more information of relevant "show" and 'debug" outputs.
19490: Nov 18 09:56:36.294 EST: IKEv2-ERROR:(SESSION ID = 42128,SA ID = 1):: Failed to locate an item in the database 019491: Nov 18 09:56:36.295 EST: IKEv2:(SESSION ID = 42128,SA ID = 1):Verification of peer's authentication data FAILED 019492: Nov 18 09:56:36.295 EST: IKEv2:(SESSION ID = 42128,SA ID = 1):Auth exchange failed
Thank you. It looks Auth failure issue is not relevant for this peer then.
Can you please post conditional debug (link below) of "debug crypto isakmp" at both ends of tunnels?