Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

IPSec VTI and MS ISA Server 2004

Good day!

We trying to design IPSec tunnel between MS ISA Server 2004 and Cisco2821 using virtual tunnel interface on router.

Problem is: IKE sa formed, IPSec sa not created. Crypto session goes to UP-IDLE.

Debug shown that cisco sent IPSEC "(key eng. msg.)" twice, dont got answer from ISA (in debug: IPSEC(key_engine): request timer fired: count = 2), and then return to IKE phase 1.

There are 2 another VTI tunnels cisco-cisco, that works fine.

Can anyone help with that solutions?

1 REPLY
Bronze

Re: IPSec VTI and MS ISA Server 2004

Try replacing MS IPSEC termination with a PIX

109
Views
1
Helpful
1
Replies