06-13-2011 04:22 AM
Hi,
I have these errors messages found in the ASA box. What does it mean and how to go about to troubleshoot it.
%ASA-7-713906: IP = x.x.x.x, Trying to find group via cert rules...
%ASA-7-713906: IP = x.x.x.x, Connection landed on tunnel_group TEST
%ASA-7-715063: Group = TEST, IP = x.x.x.x, Successfully assembled an encrypted pkt from rcv'd fragments!
%ASA-5-713201: Group = TEST, IP = x.x.x.x, Duplicate Phase 1 packet detected. Retransmitting last packet.
%ASA-6-713905: Group = TEST, IP = x.x.x.x, P1 Retransmit msg dispatched to MM FSM
%ASA-7-715063: Group = TEST, IP = x.x.x.x, Successfully assembled an encrypted pkt from rcv'd fragments!
%ASA-5-713201: Group = TEST, IP = x.x.x.x, Duplicate Phase 1 packet detected. Retransmitting last packet.
%ASA-6-713905: Group = TEST, IP = x.x.x.x, P1 Retransmit msg dispatched to MM FSM
%ASA-5-713904: Group = TEST, IP = x.x.x.x, Certificate Validation Failed %ASA-7-713906: IP = x.x.x.x, Trying to find group via cert rules...
%ASA-7-713906: IP = x.x.x.x, Connection landed on tunnel_group TEST
%ASA-7-715063: Group = TEST, IP = x.x.x.x, Successfully assembled an encrypted pkt from rcv'd fragments!
%ASA-5-713201: Group = TEST, IP = x.x.x.x, Duplicate Phase 1 packet detected. Retransmitting last packet.
%ASA-6-713905: Group = TEST, IP = x.x.x.x, P1 Retransmit msg dispatched to MM FSM
%ASA-7-715063: Group = TEST, IP = x.x.x.x, Successfully assembled an encrypted pkt from rcv'd fragments!
%ASA-5-713201: Group = TEST, IP = x.x.x.x, Duplicate Phase 1 packet detected. Retransmitting last packet.
%ASA-6-713905: Group = TEST, IP = x.x.x.x, P1 Retransmit msg dispatched to MM FSM
%ASA-5-713904: Group = TEST, IP = x.x.x.x, Certificate Validation Failed
Thank a lot
06-13-2011 04:51 AM
It seems that the certificate validation has failed.
I would try to use pre-shared key first as the authentication instead of certificate, and ensuring that VPN Client connects successfully, and once using pre-shared key is successful, then you can move to use certificate and focusing on troubleshooting the certificate if VPN connection fails.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide