Log in to ask questions, share your expertise, or stay connected to content you value. Don’t have a login? Learn how to become a member.
Hi experts'
I have established site to site to VPN between SRX 650 and Hawaii Firewall USG 2230. Occasionaly it is reported that VPN is down , during trouble shooting at SRX end IKE SA and IPSec SA are "UP" but at USG 2230 Phase 1 SA stucked up in "negotiating" phase. On removing and rebinding outgoing interface on USG side VPN is up and sometime IPsec VPN is coming UP automatically without doing anything ,
any comments
Removal of IKE IDs and Prefect Forward Secrecy at both ends solved my problem
Please mark this as accepted solution if it works for you
A Kudos is a good way of appreciation
Kashif Nawaz
JNCIP-Sec, JNCIS-Ent,JNCIS-Sec,JNCIA-JUNOS