10-09-2006 04:29 AM
I am facing probelm while establishing VPN between PIX & FortiGate.
The VPN gets established & works for soemtime -- a couple of days & then teh connection suddenly drops.
The VPN tunnel comes up only when the VPN tunnel is reset from the FortiGate end.
Coudl any one put some light on this.
Thanks
Mahavir
10-10-2006 06:03 AM
I would like to see the output of the command [diag debug app ike 2] from the console of the Fortinet box at the time the tunnel goes down.
10-10-2006 08:37 PM
Below the debug frim the FortiGate
Comes
Exchange Mode = 2, I_COOKIE = 0x596D677AF9737E85, Len = 68
checking Mastek
Mastek: phase1 found
Received Payloads= ID HASH
Initiator: main mode get 3rd response...
Mastek: set phase1(0x845b970) timeout=28800
Initiator: parsed
Then there is a packet, which apparently changes the phase1- lifetime to 900:
Comes
Exchange Mode = 5, Message id = 0x24D43533, Len = 92
checking Mastek
Mastek: phase1 found
####### ISAKMP INFO ##########
Received Payloads= HASH Notif
######### Receive Information Payload(Protected)#########
protocol_id=1, notify_msg=24576 (24576??), ispi_size=16
spi=596d677af9737e85739a05686c065ee9
Msg=80
phase1 life time is changed to 900".
Mastek: set phase1(0x845b970) timeout=900
Is this usual IPsec behaviour ?
04-02-2008 07:36 PM
Hello, curious if you got any more information on this? I am facing the same exact problem.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide