Skip to main content
seanbnd
New Member
August 7, 2019
Question

IPsec phase 1 SA deleted

  • August 7, 2019
  • 2 replies
  • 47780 views

Trying to setup an IPSec tunnel between a Fortinet 60e fw 6.0.5 and a Zywall 110. Everything in the tunnel settings match but I'm getting an error when they are connecting. From the Fortinet VPN event logs I see "IPsec phase 1 SA deleted. Remote port 4500 Log ID 37134. Everything up to the points in the logs show negotiate success. Using IKE2.

2 replies

seanbnd
seanbndAuthor
New Member
August 8, 2019

I was able to find the issue after stepping away for awhile and coming back. The remote WAN IP was wrong on the Fortinet. It was a correct IP, just not the same IP the remote location was using. It was using a secondary WAN IP.

Stemjay
New Member
September 7, 2023

Hi , i am experiening a similar challenge, how woul one go about confirm the which wan is correct or woul best would one identify ip to use.

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!