02-18-2022 04:58 AM
I've been trying for days to get a site to site vpn between a Cisco ASA and a Ubiquiti USG. I can get as far as phase 1, but thats it. Whatever settings I try to get phase 2 to work, it breaks phase 1 and I start all over. Has anyone ever successfully gotten a tunnel between these two devices to work?
Robert
02-18-2022 05:55 AM
I have had my fair share of building site to site vpn between ASA and Pfsense. But never really had much trouble.
If the settings are correct for phase 2, its worth trying debug on ASA for phase 1 and 2.
02-18-2022 06:25 AM
the PhaseII start with ID and Pre-shared Key
ID can be change due of NAT between both Peer
Pre-Shared Key if you don't specify the right Peer then IPSec select first longest match and hence the IPSec PhaseII stop there.
this two factor I think which make issue here.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide