Hi,
Previously we had a 2012 server running which established the connection and everything worked out well (except the fact that this server was just a software gateway as a temporary solution).
However, the initial setup with our SSG5 was also without any problems, the interface was quickly setup (although the standard VPN template was not working and we had to follow some blog posts to get it up and running)
After random drops of the connection - where a reconnect after 15 minute got it up and running again - we faced a error message yesterday saying "IKE V2 *azure-gateway-ip*: Received a notification message for 24 NOTIFY_MSG_AUTHENTICATION_FAILED" which finally marked the end of our entry point to the VN.
What we already tried:
- Using the standard template again... setup for dynamic or static routing did not work out
- Re-Generating the Key, Resetting the device
- Changing IKE settings according to various posts
SSG5:
Current Firmware Version: 6.3.0r17.0 (Firewall+VPN)
Logging snapsh:
2014-10-21 10:55:04 | info | IKE V2 *Gateway IP* Received a notification message for 24 NOTIFY_MSG_AUTHENTICATION_FAILED. |
2014-10-21 10:55:04 | info | IKE *Gateway IP* CHILD SA with IKE SA INIT: Initiated negotiations. |
2014-10-21 10:55:04 | info | IKE V2 *Gateway IP* : Received a notification message for 16389 NOTIFY_MSG_NAT_DETECTION_DESTINATION_IP. |
2014-10-21 10:55:04 | info | IKE V2 *Gateway IP* : Received a notification message for 16388 NOTIFY_MSG_NAT_DETECTION_SOURCE_IP. |
I am since 15 years in that business and this is the first time I post a question in this forum - we really want to get that up and running / which was already working like a charm...
Thanks for any help on that matter
Cheers
Andi
Current Firmware Version: 6.3.0r17.0 (Firewall+VPN) |
---|