no matching gateway for new requestand on the local firewall that sits behind the DSL router the P-1 process appears to be successful (event log shows a success message for P-1). I have configured both sides according to the FortiGate IPSec VPN handbook, section Dynamic DNS Configuration, using policy-based security policies. Can anyone explain me what the error message means? When I enable debug on the remote end, the only error message I see for ike is :
gw negotiation timeout
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
50(tcp/udp) - Encapsulation Header (ESP) 51(tcp/udp) - Authentication Header (AH) 500(udp) - Internet Key Exchange (IKE)ESP and AH are protocols number 50 and 51 respectively and not ports. ALso keep in mind NAT-T typically defaults to udp 4500
PCNSE
NSE
StrongSwan
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1712 | |
1093 | |
752 | |
447 | |
231 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.