cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1892
Views
0
Helpful
2
Replies

No SPI to identify Phase 2 SA!

Locayta123
Level 1
Level 1

Hi all.

I have a an issue with one particular VPN user. They are using the built in Windows Vista client to connect to my ASA 5510. All other users do not have an issue and i receive the following error at roughly the same time of day when the drop happens. Authentication is done by my AD Server which handles all logins.

<177>%ASA-1-713900: Group = DefaultRAGroup, Username = username, IP = x.x.x.x, construct_ipsec_delete(): No SPI to identify Phase 2 SA!

Thanks,

J.

2 Replies 2

Patrick0711
Level 3
Level 3

Hello Jamie,

Do you have the debug information prior to this message? 

-Patrick

No i don't. That's the only information i have that is displayed.