cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1722
Views
0
Helpful
4
Replies

ASA 5520 VPN to Nortel Contivity?

jason.scott
Level 1
Level 1

I'm trying to establish a site to site ipsec tunnel between an ASA 5520 and a Nortel Contivity box. Despite trying a number of different transform sets and IKE setups it keeps failing at phase 1 with:

Information Exchange processing failed

Received an un-encrypted INVALID_ID_INFO notify message dropping

Does anyone have any tips for this scenario please?

4 Replies 4

ggilbert
Cisco Employee
Cisco Employee

Jason,

Can you make sure the command "isakmp identity address" is inserted on the ASA.

If that still doesn't work, some type of debugs on the ASA would help us out.

debug cry isa 190

deb cry ipsec 190

Thanks

Gilbert

Hi, I found a page with useful links for Confivity to Cisco devices VPNs:

http://www130.nortelnetworks.com/go/main.jsp?poid=8245&cscat=DOCUMENTATION&pageClicked=1&docFilterTitle=&startItem=0

If you browse through pages, you will see guides to connect Contivity to Cisco IOS, Concentrators, PIX.

Please rate if this helped.

Regards,

Daniel

Thank you both, got it working now. I'm not quite sure what eventually 'fixed' it but trial and error got it working.

church27104
Level 1
Level 1

I am having a similar problem creating a ipsec tunnel from an asa5520 to a nortel contivity 1100. I get past phase 1 and phase 2 and the tunnel is up but the tunnel will still not pass traffic. Cisco TAC says that the asa is configured correctly but I'm not sure about the nortel....I don't have support for it. Any help/advise would be greatly appericiated.