cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
793
Views
0
Helpful
1
Replies

Lan2Lan Tunnel IKE peer Remote peer mismatch

Robert Slusar
Level 1
Level 1

I am buidling a second Lan-to-Lan tunnel on a 3005 concentrator. Pahse one appears to be sucessful but tunnel fails to complete with th4e following message:

Tunnel Rejected: IKE peer does not match remote peer as defined in L2L policy

IKE peer address: xx.xx.xx.xx Remote peer address: yy.yy.yy.yy

Where xx.xx.xx.xx is the IP address of the remote peer of the new tunnel. (Expected) and yy.yy.yy.yy is the ip address of pre-existing tunnel's remote peer (Unexpected, at lest by me.)

WHat I wonder is for the first tunnel I have defined the remote network as 10.0.0.0 0.255.255.255 and for the new tunnel I have defined the remote network as 10.8.111.0 0.0.0.255.

Could the overlap be a problem?

1 Reply 1

ivillegas
Level 6
Level 6

Make sure the interesting traffic match on the participating devices. If you have any tunnel any unused tunnel bring it down.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: