Used the VPN config wizard to setup vpn between two SRX100s. The web interface indicates that phase one and two have come up but I cannot ping between the locations from either side.
Here is an excerpt from the kmd log:
Jun 25 01:26:57 KMD_VPN_UP_ALARM_USER: VPN ipsec-vpn-cfgr from ***.***.***.*** is up.
Jun 25 01:26:57 KMD_VPN_UP_ALARM_USER: VPN ipsec-vpn-cfgr from ***.***.***.*** is up.
Jun 25 01:26:57 KMD_PM_SA_ESTABLISHED: Local gateway: 10.0.0.8, Remote gateway: ***.***.***.***, Local ID: ipv4_subnet(any:0,[0..7]=0.0.0.0/0), Remote ID: ipv4_subnet(any:0,[0..7]=0.0.0.0/0), Direction: inbound, SPI: 7cedd4a1, AUX-SPI: 0, Mode: tunnel, Type: dynamic
Jun 25 01:26:57 KMD_PM_SA_ESTABLISHED: Local gateway: 10.0.0.8, Remote gateway: ***.***.***.***, Local ID: ipv4_subnet(any:0,[0..7]=0.0.0.0/0), Remote ID: ipv4_subnet(any:0,[0..7]=0.0.0.0/0), Direction: inbound, SPI: 7cedd4a1, AUX-SPI: 0, Mode: tunnel, Type: dynamic
Jun 25 01:26:57 KMD_PM_SA_ESTABLISHED: Local gateway: 10.0.0.8, Remote gateway: ***.***.***.***, Local ID: ipv4_subnet(any:0,[0..7]=0.0.0.0/0), Remote ID: ipv4_subnet(any:0,[0..7]=0.0.0.0/0), Direction: outbound, SPI: 3fa63b99, AUX-SPI: 0, Mode: tunnel, Type: dynamic
Jun 25 01:26:57 KMD_PM_SA_ESTABLISHED: Local gateway: 10.0.0.8, Remote gateway: ***.***.***.***, Local ID: ipv4_subnet(any:0,[0..7]=0.0.0.0/0), Remote ID: ipv4_subnet(any:0,[0..7]=0.0.0.0/0), Direction: outbound, SPI: 3fa63b99, AUX-SPI: 0, Mode: tunnel, Type: dynamic
Jun 25 01:28:43 KMD_INTERNAL_ERROR: Peer entry not found for peer: 324c1ef9, port:500 while deleting peer entry
Jun 25 01:28:43 KMD_INTERNAL_ERROR: Peer entry not found for peer: 324c1ef9, port:500 while deleting peer entry
Jun 25 01:28:43 KMD_VPN_DOWN_ALARM_USER: VPN ipsec-vpn-cfgr from ***.***.***.*** is down.
Jun 25 01:28:43 KMD_VPN_DOWN_ALARM_USER: VPN ipsec-vpn-cfgr from ***.***.***.*** is down.
Jun 25 01:28:58 KMD_INTERNAL_ERROR: Not able to create eer entry for peer: 324c1ef9, port:500
Jun 25 01:28:58 KMD_INTERNAL_ERROR: Not able to create eer entry for peer: 324c1ef9, port:500
Jun 25 01:28:58 KMD_VPN_UP_ALARM_USER: VPN ipsec-vpn-cfgr from ***.***.***.*** is up.
Jun 25 01:28:58 KMD_VPN_UP_ALARM_USER: VPN ipsec-vpn-cfgr from ***.***.***.*** is up.
Jun 25 01:28:58 KMD_PM_SA_ESTABLISHED: Local gateway: 10.0.0.8, Remote gateway: ***.***.***.***, Local ID: ipv4_subnet(any:0,[0..7]=0.0.0.0/0), Remote ID: ipv4_subnet(any:0,[0..7]=0.0.0.0/0), Direction: inbound, SPI: 775ce8e7, AUX-SPI: 0, Mode: tunnel, Type: dynamic
Jun 25 01:28:58 KMD_PM_SA_ESTABLISHED: Local gateway: 10.0.0.8, Remote gateway: ***.***.***.***, Local ID: ipv4_subnet(any:0,[0..7]=0.0.0.0/0), Remote ID: ipv4_subnet(any:0,[0..7]=0.0.0.0/0), Direction: inbound, SPI: 775ce8e7, AUX-SPI: 0, Mode: tunnel, Type: dynamic
Jun 25 01:28:58 KMD_PM_SA_ESTABLISHED: Local gateway: 10.0.0.8, Remote gateway: ***.***.***.***, Local ID: ipv4_subnet(any:0,[0..7]=0.0.0.0/0), Remote ID: ipv4_subnet(any:0,[0..7]=0.0.0.0/0), Direction: outbound, SPI: 57458cd9, AUX-SPI: 0, Mode: tunnel, Type: dynamic
Jun 25 01:28:58 KMD_PM_SA_ESTABLISHED: Local gateway: 10.0.0.8, Remote gateway: ***.***.***.***, Local ID: ipv4_subnet(any:0,[0..7]=0.0.0.0/0), Remote ID: ipv4_subnet(any:0,[0..7]=0.0.0.0/0), Direction: outbound, SPI: 57458cd9, AUX-SPI: 0, Mode: tunnel, Type: dynamic
I'm not seeing what is "expected" from the KB articles I've read, but the web interface indicates thr link is up. Any insights would be great.
Luke