Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Community Member

Site-to-Site VPN between Cisco 3030 and Watchguard FB1000

I am attempting to configure a Site-to-Site VPN connection between a Cisco VPN 3030 Concentrator (my end) and a Watchguard FB1000 (remote end). It seems like we are talking two different languages in the process of setting up the configuration. Does anyone have any experience in this area? We were successful in setting up the IKE session but could not get beyond that point. I keep getting the message: 'All IPSec SA proposals found unacceptable!' and then the session disconnects. In the process of setting up the configuration details, the options on the VPN 3030 and the Watchguard FB1000 did not have the same names so we attempted to use parameters that had names as close as possible but it looks like they were not close enough. Any assistance would be appreciated. Thanks

1 REPLY
Silver

Re: Site-to-Site VPN between Cisco 3030 and Watchguard FB1000

The issue is due to IKE: Failing on Phase 1 negotiation.

The following error messages will appear due IKE: Failing on Phase 1 negotiation.

Group [3002group]

Xauth required but selected Proposal does not support xauth,

Check priorities of ike xauth proposals in ike proposal list

Group [3002group]

All SA proposals found unacceptable

222
Views
0
Helpful
1
Replies
CreatePlease to create content