12-07-2006 04:24 AM - edited 02-21-2020 02:45 PM
Hello
I have problem with ipsec tunnel from pix to netscreen.
Ipsec connection works only when i remove EasyVPN configuration.
If EasyVPN config is applied, the ipsec negotiation is stopiing on phase 2 with ISAKMP state: OAK_CONF_ADDR
best regards
Martin
12-07-2006 04:58 AM
Martin
Verify your config on both devices with the following document:
http://www.cisco.com/en/US/tech/tk583/tk372/technologies_configuration_example09186a00801c4445.shtml
Hope this helps
12-07-2006 05:43 AM
I have read this document before I posted the message. My config is similar, without pfs. I don't use pfs. This is requirement from netscreen administrator.
The problem is EasyVpn, without it tunnel works correctly.
Martin
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide