Skip to main content
rgreene
New Member
June 10, 2015
Question

FortiClient auto provision of IPSec tunnels

  • June 10, 2015
  • 0 replies
  • 2945 views

I'm building a tunnel endpoint for dialup clients connecting to multiple networks.  One thing I've noticed is that if I auto-provision, the local ID is not set.  Without that, I get errors in phase 1 and they can't connect.

 

"ike Negotiate ISAKMP SA Error: ike 0:87de531980c1529e/0000000000000000:18: no SA proposal chosen"

 

Am I missing something?  Auto-provision looks nifty and would be a time saver if it worked like I think it should.