Quantcast
Channel: Azure Networking (DNS, Traffic Manager, VPN, VNET) forum
Viewing all articles
Browse latest Browse all 6513

Sonicwall NSA 3500 not connecting

$
0
0

Greetings,

I have a Sonicwall NSA 3500 firewall and I just cannot get it to connect to the Azure VPN, here are the current settings at both ends:

Azure

Gateway 168.63.X.X

Address 10.4.0.0/16

FrontEnd 10.4.2.0/24

Backend 10.4.3.0/24

AD 10.4.4.0/24

DNS Servers 10.0.X.X

Connectivity connect to local network is ticket, gateway subnet is 10.4.1.0/24

Sonicwall

Policy type is site to site

Auth Mode IKE using preshared key

IPSEC Primary Gateway 168.63.X.X

Preshared key is copied from Azure

Local IKE ID IP Addy 194.217.X.X - my external IP

Peer IKE ID IP Addy 168.63.X.X - Azure gateway IP

Network

Local Network is firewalled subnets

Remote network is the address object I set up for the Azure ip range

Proposals

IKE (Phase1) Exchange Main Mode

DH Group 2

Encryption AES-128

Authentication SHA1

LifeTime (seconds) 28800

IPsec (Phase 2)

Protocol ESP

Encryption ESP

Authentication SHA1

Enabled Perfect Forward Secrecy is selected with DH group 2

Lifetime (seconds) 3600

Advanced

Enable keep alive is ticked, everything else is blank.

Can anyone spot my error, the VPN just will not connect. I get occasional phase 1 connections then they fail and never get a phase 2 connection at all.

Any help you can give is greatly appreciated!!

Danny


Viewing all articles
Browse latest Browse all 6513

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>