cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2662
Views
0
Helpful
1
Replies

VPN ERROR :No proposal chosen (14)

bashiru.bayonle
Level 1
Level 1

Hello all,

I have existing functional site to site VPN link and there is need for us to access another host at the remote end. New host IP address has been added to my interesting traffic and same has been done at remote end. But, when i initiate traffic from my end and check the logs on my Firewall, i got the below response. 

Can someone tell me where the problem is please?

5|Feb 07 2017 10:34:06|752004: Tunnel Manager dispatching a KEY_ACQUIRE message to IKEv1. Map Tag = OUTSIDE_VPN. Map Sequence Number = 201.
4|Feb 07 2017 10:34:06|752010: IKEv2 Doesn't have a proposal specified
5|Feb 07 2017 10:34:06|713041: IP = 196.xx.xx.xx, IKE Initiator: New Phase 1, Intf PRODUCTION, IKE Peer 196.xx.xx.xx local Proxy Address 197.xx.xx.xx, remote Proxy Address 196.xx.xx.xx, Crypto map (OUTSIDE_VPN)
6|Feb 07 2017 10:34:10|713172: Group = 196.xx.xx.xx, IP = 196.xx.xx.xx, Automatic NAT Detection Status:   Remote end is NOT behind a NAT device   This end is NOT behind a NAT device
6|Feb 07 2017 10:34:10|113009: AAA retrieved default group policy (DfltGrpPolicy) for user = 196.xx.xx.xx
5|Feb 07 2017 10:34:10|713119: Group = 196.xx.xx.xx, IP = 196.xx.xx.xx, PHASE 1 COMPLETED
5|Feb 07 2017 10:34:14|713068: Group = 196.xx.xx.xx, IP = 196.xx.xx.xx, Received non-routine Notify message: No proposal chosen (14)

1 Reply 1

Can you share the whole Site to Site config on both the routers??

Regards,

Rikshit