My crypto policies are the same
The problem I think is the debug:
deleting SA reason "" state
deleting SA reason "death by retransmission P2"
The Cisco website has nothing on this 2nd debug and I don't understand what is causing this and what I can do to stop it.
I'm...
Yizhar,
Access-lists are matching - surely it would not work in at all if access-lists were not matching?
Had a look also for timeout parameters - I cannot see a command on the router or PIX to verify these - can you advise what command(s) I should be using?
Jerph,
Not resolved...
Yizhar,
Thanks for reply, as requested config sections and debugs, appears to be a phase 2 error but not sure how to resolve.
Sorry for length of info.....
Regards
Paul
Relevant PIX config sections....
PIX Version 6.2(2)
access-list 100 permit ip 192.168.0.0 255.255.255.0 192.168.10.0...
Can't work this out - anyone any thoughts......
Site1 PIX with many working vpn tunnels
Site2 827 Router with working vpn config
When tunnel is up it works okay in both directions. If the tunnel is left idle it stops responding for pings from hosts behind 827 to hosts behind PIX fail. If you...
Can't work this out - anyone any thoughts......
Site1 PIX with many working vpn tunnels
Site2 827 Router with working vpn config
When tunnel is up it works okay in both directions. If the tunnel is left idle it stops responding for pings from hosts behind 827 to hosts behind PIX fail. If you...
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.