Unanswered Question
May 28th, 2009

I have a site to site tunnel between Cisco 2821 router with Version 12.4(13r)T and Netscreen firewall, the tunnel is up and all things seem to be working but it flaps all the time.

I get following error continuously:

%CRYPTO-6-IKMP_MODE_FAILURE: Processing of Quick mode failed with peer at xxx.xxx.xxx.xxx

I also get following error frequently(but not sire it is for the same peer):

%CRYPTO-4-PKT_REPLAY_ERR: decrypt: replay check failed

connection id=141, sequence number=12138692

I have more than 20 IPSec tunnels running on the router and avaerage CPU utilization for last 72 hours is more than 60%

Attached is the file containing config of both the devices

I have this problem too.
1 vote
  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)


This Discussion