We have IPSEC tunnel to vendor every few mins in system logs i see
eventid eq ike-nego-p2-succ
and ( description contains 'IKE phase-2 negotiation is succeeded as initiator, quick mode. Established SA: 193.x.x.x.[500]-174.112.x.x[500] message id:0x8988FE61, SPI:0xB410457F/0x01E085CD.' )
Solved! Go to Solution.
Any reasons why we will see these logs repeatedly?
Seems rebooting the vendor device has fixed the issue for now
What lifetime values do you have configured fof phase 2?
3600 secs
With an unlimited lifesize?
yes lifesize is unlimited
Prior to the successful negotiation, are there logs that the other end closes the phase 2?
on my side i see all is good
Other side I do not know as i do not have access
Logs of the phase 2 closure on your firewall, I meant.
i do not see any fail message.
Before success i see this message ( eventid eq ike-nego-p2-start )
After success I see this event type and ( eventid eq ipsec-key-install )
Any reasons why we will see these logs repeatedly?
Seems rebooting the vendor device has fixed the issue for now
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!