Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 

IPSec phase 1 SA does not come up on the Cisco Adaptive Security Appliance (ASA)

Core issue

This  problem occurs when the #tunnel-group 'Tunnelgroup1'  command is issued.

Resolution

In order to resolve the problem, verify these issues:

  • All the phase 1 policies are correct

  • The tunnel-group command has the peer IP address, as shown in this example:

    #tunnel-group type ipsec-l2l

For details on the configuration, refer to Configuring Tunnel Groups, Group Policies and Group Users.

1130
Views
0
Helpful
0
Comments