Description | This article describes how to resolve an issue where IPsec phase 1 is not coming up and the debug logs are showing 'ignoring IKE request, interface is administratively down'. |
Scope | FortiGate. |
Solution |
When troubleshooting a down tunnel, the user may encounter a log error ' <IPSEC Name> : ignoring IKE request, interface is administratively down' while running the IPSEC debug commands below:
diagnose debug application ike -1 diagnose debug enable
The error indicates that the tunnel interface is intentionally disabled. It was possibly turned off by another administrator during troubleshooting.
Sample Output:
To resolve the issue, enable the tunnel interface.
Using GUI:
|
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.