Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

VPN termination errors

Hopefully someone can help with a termination issue I'm having with a PIX-515e firewall; software version 6.3.4, pdm version 3.0.2.

We're getting constant vpn termination errors (reason 412 and 413) from a group of users at one location. I am by no means a pix guru, but I've verified that nat-t is configured. I can't figure out how to determine if there is a group policy set. I'd be happy to post or email the current config if that will help - it's about 150 lines long.

9 REPLIES
Cisco Employee

Re: VPN termination errors

Go ahead and post it, we need to see if you are missing some lines there

New Member

Re: VPN termination errors

Config is attached. Let me know if I need to post it inline. Thanks.

Cisco Employee

Re: VPN termination errors

Well it all looks good on your config, can you turn on the following debugs?

debug crypto isakmp

debug crypto ipsec

New Member

Re: VPN termination errors

Using the CLI, I entered the two commands you listed. But, I'm not sure what to do next.

Cisco Employee

Re: VPN termination errors

You need to get a vpn client to try to connect to your pix to generate debug logs

New Member

Re: VPN termination errors

Now that the debug logs have been enabled for several weeks, where do I find the log files?

Cisco Employee

Re: VPN termination errors

If you did not set any syslog servers, you need to get the output of the show log, however this log is a circular buffer most likely some events have been overwritten.

New Member

Re: VPN termination errors

And how exactly do I get the output of the show log?

Cisco Employee

Re: VPN termination errors

on CLI you type "show log"

117
Views
0
Helpful
9
Replies