Good Afternoon, I am trying to bring up a site to site vpn between a
Cisco device and a Fortigate 60D 5.4.5. Phase1 is coming up fine, but
phase 2 is not establishing and giving me the error: ike
0:vpn2mpls:32522: notify msg received: NO-PROPOSAL-CHO...
Hello Everyone, While using a 3950B we have a CRL (Certificate
Revocation List) update which is scheduled to be updated every 30
minutes. However after the first CRL Update, the code gets scrambed in
FortiOS and looks like the following:
------------...
I found the solution. I used Option#2 from this article from Cisco:
https://supportforums.cisco.com/t5/security-documents/l2l-vpn-troubleshooting-quot-ipsec-policy-invalidated-proposal/ta-p/3115635
Cut and paste from ARticle:Solution:The problem here...
I tried removing the timers, however I was able to get the debugs from
the Cisco Side and they show the following: VAS-GATEWAY#debug crypto
ipsec Crypto IPSEC debugging is on VAS-GATEWAY# *Aug 31 13:12:03.047:
IPSEC(validate_proposal_request): propos...