Enhanced Security Measures in Place:   To ensure a safer experience, we’ve implemented additional, temporary security measures for all users.

Every few mins in system logs eventid eq ike-nego-p2-succ

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements

Every few mins in system logs eventid eq ike-nego-p2-succ

Cyber Elite
Cyber Elite

 

We have IPSEC tunnel to vendor every few mins in system logs i see

 

eventid eq ike-nego-p2-succ

 

and ( description contains 'IKE phase-2 negotiation is succeeded as initiator, quick mode. Established SA: 193.x.x.x.[500]-174.112.x.x[500] message id:0x8988FE61, SPI:0xB410457F/0x01E085CD.' )

MP

Help the community: Like helpful comments and mark solutions.
1 accepted solution

Accepted Solutions

Any reasons why we will see these logs repeatedly?

Seems rebooting the vendor device has fixed the issue for now

MP

Help the community: Like helpful comments and mark solutions.

View solution in original post

9 REPLIES 9

L7 Applicator

What lifetime values do you have configured fof phase 2?

3600 secs

MP

Help the community: Like helpful comments and mark solutions.

L7 Applicator

With an unlimited lifesize?

yes lifesize is unlimited

MP

Help the community: Like helpful comments and mark solutions.

L7 Applicator

Prior to the successful negotiation, are there logs that the other end closes the phase 2?

on my side i see all is good

Other side I do not know as i do not have access

MP

Help the community: Like helpful comments and mark solutions.

L7 Applicator

Logs of the phase 2 closure on your firewall, I meant.

i do not see any fail message.

 

Before success i see this message ( eventid eq ike-nego-p2-start )

 

After success I see this event type  and ( eventid eq ipsec-key-install )

 

MP

Help the community: Like helpful comments and mark solutions.

Any reasons why we will see these logs repeatedly?

Seems rebooting the vendor device has fixed the issue for now

MP

Help the community: Like helpful comments and mark solutions.
  • 1 accepted solution
  • 4347 Views
  • 9 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!