Skip to main content
adrianit
New Member
June 19, 2025
Question

Anomaly IP Sec negotiate Status negotiate

  • June 19, 2025
  • 1 reply
  • 475 views
 
 

Dear Team Fortinet Comunity 

 

I have issue this VPN IP Sec anomaly error status negotiate and failure and this issue looping errot stat ,

 

do you have any suggestion for the resolve this issue or manual to fix this problemphase1.JPGphase2.JPGAnomaly.JPGanomaly2.JPG

Thank you for support and cooperation 

 

1 reply

atakannatak
Explorer
June 19, 2025

Hi @adrianit ,

 

The logs show the tunnel fails to establish with the message “Peer SA proposal does not match local policy.” For more details, refer to the link below.

 

https://community.fortinet.com/t5/FortiGate/Technical-Tip-IPsec-does-not-match-local-policy/ta-p/215368

 

To pinpoint the configuration error, we need application-level debug logs. Run these commands:

 

diagnose vpn ike log-filter dst-addr4 (X.X.X.X) <----- IP address of the remote peer.
diagnose debug application ike -1
diagnose debug enable


BR.

 

If my answer provided a solution for you, please mark the reply as solved it so that others can get it easily while searching for similar scenarios.

 

CCIE #68781