I'm working on creating a tunnel between an ASA 5505 and a box running Check Point NG/AI. I've set up a couple of other Cisco to Check Point tunnels with this same Check Point peer without any problems. This time however, a SA is never created and I get the following when I debug ISAKMP on the ASA:
Dec 19 03:48:14 [IKEv1]: Group = x.x.7.225, IP = x.x.7.225, Received an un-encrypted PAYLOAD_MALFORMED notify message, dropping
Dec 19 03:48:14 [IKEv1]: Group = x.x.7.225, IP = x.x.7.225, Error, peer has indicated that something is wrong with our message. This could indicate a pre-shared key mismatch.
Dec 19 03:48:14 [IKEv1]: Group = x.x.7.225, IP = x.x.7.225, Information Exchange processing failed
The pre-shared key is not mismatched. Does anybody have any ideas as to what else I might check?
Thanks in advance,