Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
TJNIHAL
New Contributor

Additional Phase 2 subnet frequent disconnection

 

Hi,

I have a IPsec connection to azure virtual network

 

Recently we added our partner company in azure virtual network So,

 

In order to give access to Fortigate I created additional Phase 2 selectors with existing IPsec VPN  

 

followed the same phase 2 proposal

        

Phase 2 proposal encryption AES128 Authentication SHA1 encryption AES256 Authentication SHA1 encryption AES128 Authentication SHA256 encryption AES256 Authentication SHA256 Replay detection TICK PFS UNTICK Local port all TICK Remote port all TICK Protocol All TICK Keep Alive and auto negotiate TICK key lifetime in seconds 3600

 

Azure virtual network subnet working fine stay up for 24/7

 

But additional subnet ONLY disconnecting after few hours and it only reconnect after recreating or restart (refer image)

 

I got 2 event log in VPN

 

Message: IPsec ESP error

Action: error

status : esp_error

 

 

Message: progress IPsec phase 2

Action: negotiate

status : failure

 

Kindly help me to resolve this Thanks & Regards, Nihal

0 REPLIES 0
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors