Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

ASA to PIX VPN Error 402120

Hi,

We're getting the error below (about 3000 per day) on an ASA5520 (7.2.2) when it receives L2L VPN traffic from a PIX-525 (6.3(5)140):

%ASA-4-402120: IPSEC: Received an ESP packet (SPI= 0xB8EE870D, sequence number= 0x534B0) from 10.10.50.4 (user= 10.10.50.4) to 10.10.62.4 that failed authentication.

Both ends are running failover mode. Could this be an issue between PIX-OS versions?

Thanks in advance.

-Dan

2 REPLIES
New Member

Re: ASA to PIX VPN Error 402120

Hi,

we discovered same problem on L2L VPN between two ASA 8.0.4 - %ASA-4-402120: IPSEC: Received an ESP packet...that failed authentication. We have not only log/error decryption issue but there is problem with transmiting a bigger data loads. What can be behind this "faild authentication"? Any infrastructure problem? Both ASA's are physically connected on some switch. Any ideas?

Thank you!

Radim

New Member

Re: ASA to PIX VPN Error 402120

maybe it's this bug:

CSCsd34052

crash in isakmp_receiver thread during rekey from 7.x peer.

876
Views
0
Helpful
2
Replies