cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1026
Views
0
Helpful
2
Replies

Site-to-Site IPSec tunnel between ISA500 and RV220

Hello,

As I've stated last week I'm trying to establish a site-to-site IPSec tunnel between an ISA500 and an RV220.

Here's the logs I'm getting on the ISA500:

2013-06-25 10:19:50 Warning IPsec VPN msg=packet from 24.212.79.122:500: IKE Responder: IKE Phase 1 exchange does not match ;  

1 2013-06-25 10:19:50 Information IPsec VPN msg=packet from 24.212.79.122:500: Receive site-to-site VPN connection request ;  

2 2013-06-25 10:19:50 Warning IPsec VPN msg=packet from 24.212.79.122:500: received Vendor ID payload [Dead Peer Detection];  

3 2013-06-25 10:19:50 Warning IPsec VPN msg=packet from 24.212.79.122:500: received Vendor ID payload [RFC 3947] method set to=109 ;  

4 2013-06-25 10:19:50 Warning IPsec VPN msg=packet from 24.212.79.122:500: received Vendor ID payload [draft-ietf-ipsec-nat-t-ike-02_n] method set to=106 ;  

5 2013-06-25 10:19:50 Warning IPsec VPN msg=packet from 24.212.79.122:500: ignoring unknown Vendor ID payload [810fa565f8ab14369105d706fbd57279];

Can anyone help ?

Thanks,

Dan.

2 Replies 2

Michael Muenz
Level 5
Level 5

"2013-06-25 10:19:50 Warning IPsec VPN msg=packet from 24.212.79.122:500: IKE Responder: IKE Phase 1 exchange does not match ;  "

Have you checked the values? ISA per default uses AES256/SHA1 ...

Michael

Please rate all helpful posts

Michael Please rate all helpful posts

smetieh001
Level 1
Level 1

I agree with Ciscomax. I would start by looking at your IKE 1 parameters. are you able to post phase 1 config for both near and remote ends?