Hello Mandar, From the above mentioned logs, it looks the SA key is getting deleted pre-maturely. Hence the tunnel is trying to establish multiple times. Could you please confirm below mentioned information here: 1: what value has been set for IPSec phase-1 and Phase-2 lifetime for this VPN tunnel..? 2: could you please take a packet capture on the PAN external interface between 2 IPSec gateway IP and verify, who is initiating the ISAKMP SA deletion messages..? 3: could you please confirm, if DPD and tunnel monitoring is configured on this PAN firewall, same setting has been defined on the other end device as well...? 4: if DH key is configured on PAN for IPSec crypto, make sure same DH group has been configured on the other end firewall as well. Thanks
... View more