Quantcast
Channel: Sophos User Bulletin Board
Viewing all articles
Browse latest Browse all 14361

IPsec S2S vpn with certificate does not work with ASA

$
0
0
Hi ,
I have Astaro 220 box version 8.305 .
I tried to establish an IPsec S2S vpn with certificate with a cisco ASA 5510.
but it can not be established although I configured all phase 1 and phase 2 policy same in Astaro and ASA and also the lifetime.
-Certificates is issues by external CA.
-IPsec PFS group is enabled in both side.
-No strict policy nor compression configured in both side.
-There is no natting.
-No DPD Nor CRL configured.

-Please note that the same configuration is working but with preshared key.
Kindly find the attached log of the ASTARO and ASA .
Thanks,
Mostafa Aly

Attached Files
File Type: txt asa1104121537.1.txt (1.6 KB)
File Type: zip Astaro1104121536.1.txt.zip (37.4 KB)

Viewing all articles
Browse latest Browse all 14361

Trending Articles