11-07-2007 08:10 AM - edited 03-09-2019 07:16 PM
I have a VPN that frequently enters the state "mm_no_state" and we are forced to clear down the ipsec connection and/or reload the firewall.
Does anyone know why this keeps happening? The VPN works fine 90% of the time but frequently drops to mm_no_state.
What should I check? What could the problem be? Any help or advice would be helpful.
Thanks.
11-14-2007 10:43 AM
Check by sending IPSec packet from one side and check the response from other side. Check the show crypto ipsec sa and see in which end device shows the erroe MM_NO...state will produce the error. Check the ISAKMP profile mataches both the side.
11-15-2007 06:43 AM
Below is an excellent URL on IP Security Troubleshooting - Understanding and Using debug Commands. This should point you in the right direction.
http://cisco.com/en/US/tech/tk583/tk372/technologies_tech_note09186a00800949c5.shtml
Regards,
Arul
11-15-2007 10:16 PM
What devices are you using? ASA's, Routers? What version IOS?
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: