Cisco Support Community
Showing results for 
Search instead for 
Did you mean: 

The IPSec L2L VPN tunnel does not come up on the PIX Firewall or ASA, and the user receives the QM FSM error message

Core issue

One possible reason is the proxy identities (interesting traffic, Access Control List (ACL) or crypto ACL) are not matching on both the ends.


Check the configuration on both the devices, and make sure that the crypto ACLs match.

For more information, refer to Router-to-PIX Security Appliance 7.x and Later or ASA Configuration Example.

Version history
Revision #:
1 of 1
Last update:
‎06-22-2009 05:31 PM
Updated by:
Labels (1)