Skip to main content
Evyatar
New Member
January 28, 2018
Question

Problem (LOG) with Fortigate 100E

  • January 28, 2018
  • 1 reply
  • 8291 views

Hi

For about a week now I'm getting this messge which is annoying as hell! And I just don't understand why is it coming...

Please help.

 

Here's the log, getting it every few hours...

 

Message meets Alert condition date=2018-01-27 time=17:17:06 devname=FG100E4Q17002472 devid=FG100E4Q17002472 logid=0101037124 type=event subtype=vpn level=error vd=root logdesc="IPsec phase 1 error" msg="IPsec phase 1 error" action=negotiate remip=71.6.158.XXX locip=62.219.36.XXX remport=4500 locport=4500 outintf="wan1" cookies="e5f858a0876af576/0000000000000000" user="N/A" group="N/A" xauthuser="N/A" xauthgroup="N/A" assignip=N/A vpntunnel="N/A" status=negotiate_error reason="peer SA proposal not match local policy" peer_notif="NOT-APPLICABLE"

 

What should I do, and what's the problem?

Thank you so much!

    1 reply

    FortiKoala
    Staff
    Staff
    January 29, 2018

    You have a negotiation error in one of your IPSEC tunnels, to find out which IPSEC VPN it is, follow the debug instructions in this article http://cookbook.fortinet.com/ipsec-vpn-troubleshooting/

     

     

     

    davy003
    New Member
    February 12, 2020

    Hi Evyatar ,

    Do you find solution for your problem ?

    i have your problem in Fortigate 200E too . can you help me ?

     

    Best regard