cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
654
Views
0
Helpful
8
Replies

VPN tunnel problem

ajinkya.k
Level 1
Level 1

hello ,

I have PIX 515E PIX

I have changed my tunnel peer ip from peer from 195.11.199.144 to 195.11.204.5

After chenging the peer ip my existing tunnel goes down and i get following error.

195.11.204.5 X.X.X.226 MM_NO_STATE 0 0

Kindly help me out to overcome this issue.

-Ajinkya Kulkani.

8 Replies 8

a.alekseev
Level 7
Level 7

Why are you going to change peer's ip address?

Hi a.alekseev

This is my customer reqirement.

Ajinkya

so both of you must do some modifications.

you need also set pre-shared key for the new peer's address

[Pls RATE if HELPS]

I hve allready configured following configuration.

no crypto map newmap interface outside

no crypto map newmap 171 set peer 195.11.199.144

no isakmp key ********* address 195.11.199.144 netmask 255.255.255.255 no-xauth no-config-mode

crypto map newmap 171 set peer 195.11.204.5

isakmp key ******** address 195.11.204.5 netmask 255.255.255.255 no-xauth no-config-mode

clear crypto ipsec sa

clear crypto isakmp sa

crypto map newmap interface outside

Setting were applied successfully however Still VPN tunnel is not been initiated.

Ask your client...

Have they the configuration changed?

I think that in "isakmp key ******** address 195.11.204.5 netmask 255.255.255.255 no-xauth no-config-mode"

you entered a real key, not just "********"

hi

no configurstion changes has been changed except peer IP add and we entered real keys

not just "******"

-ajinkya

so,

debug crypto ipsec

debug crypto isakmp

Hi,

I will check debug command and let you know tomorrow.

Kindly be with me.

Ajinkya

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card