[strongSwan] Phase 2 ESP Failing between StrongSWAN 5.3.5 and Cisco VPN 3000

Tobias Brunner tobias at strongswan.org
Mon Sep 19 10:06:03 CEST 2016


Hi Mahesh,

> It seems that phase 1 IKE is working but not phase 2 ESP. I've tried
> different settings for ike= to no avail. Config and brief log below and
> extended log attached. 

You should check the responder's log.  It seems to immediately delete
the IKE_SA after receiving the Quick Mode request, perhaps it also logs
the reason why it did so.

Regards,
Tobias



More information about the Users mailing list