[Vpn-help] VPN connectivity issue using Cisco 3030 and RSA key

Matthew Grooms mgrooms at shrew.net
Sun Oct 18 17:47:28 CDT 2009


Video Game Junkie wrote:
> I have been trying to get the vpn client working with my pcf import on 2 
> different system builds. I have a Cisco VPN concentrator and use the 
> SecurID RSA key for added security. I can't seem to get the VPN 
> connection to stay active, after it brings up the tunnel, a few seconds 
> later it disconnects.
> 
> Attached is the output of my IKE trace. (I adjusted the IP information 
> to make it private). The trace is from my Windows XP system
> 

Jeff,

As soon as you attempt to negotiate a phase2 SA, the gateway is sending 
a DELETE notification for the phase1 SA. This is an instruction for the 
client to disconnect immediately.

Your gateway doesn't like something in the phase2 proposal. Have you 
looked at the debug crypto isakmp output of your gateway to see if it 
shows anything useful?

-Matthew



More information about the vpn-help mailing list