Trying to migrate our L2L VPN connections from our 3030 concentrator to our ASA 5520 running 8.0(3). It looks to be trying to establish our test tunnel. But we get the following error on the remote end: *Jun 11 16:13:15.740: No peer struct to get peer description
I don't believe the asa or the other end applience will attempt to bring the tunnel up until one side sends interesting traffic, depending on how your tunnel is setup in terms who will be the initiator one side must generate traffic to bring up the tunnel. Have you tried sending pings or whichever tcp traffic you configured in your acls?
If you have sent interesting traffic and no joy I would suggest to troubleshoot fruther with debug crypto isakmp to determin where phase-1 fails.
As double check, make sure both ends coninside and perfectly match/agree on the isakmp policy settings, this is the most common stage where l2l fails at first.
Thanks. The error message was debug output. Not sure what it is. Never saw this kind of message before. The ISAKMP policy do indeed match as well as the transforms. This message appears only when traffic is initiated (telnet).
Thanks. Ended up being the ACL. I finally did an IP any any and it came up. Then worked backwards to refine the ACL and now all is well. I had also missed a specific route as I assumed the default would take care of it.
Login to the FXOS chassis manager.
Direct your browser to https://hostname/, and log-in using the user-name and password.
Go to Help > About and check the current version:
Check the current version availa...
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...