I have a remote user at home that currently has a WRV210. The site to site vpn works fine on that one. However, the router has seems to be flaking out and some ports do not work and the wireless either.
So I ordered him a RV110W. It has the latest firmware. I tried reseting to factory defaults and resetting up again but still no go.
If I configure the vpn on the RV110W, it either does not work, or works partially but keeps dropping.
I can ping his end and he can access the lan resouces. However his VIOP phone will not connect over the tunnel.
If i remote the 110 and put the 210 back in, everything works fine.
I have matched up all settings from the 210 to 110 as well as the rekey/other times.
Some of the errors I see are:
QM Fsm error (p2 struct errors after running for a short time fine on the 110
Received encrypted packet with no matching SA, dropping
If I then put the 210 back in the vpn works flawlessly until the unit flakes out.
I belive it is something to do with NAT Transveral as that is the only setting that is not available on the 110 (that i can find)
Any ideas if that is the problem or other solution?
Hi jefforamma, thank you for using our forum, my name is Luis I am part of the Small business Support community. In this case I could share to you the Admin guide, Configuring Basic VPN Settings (Site-to-Site VPN) in page 100, you will find some steps in order to guide your VPN configuration.
Please check this additional information:
Perfect forwarding Secrecy should be disabled.
Check is the connection is in main mode
However, you can get more feedback about your VPN configuration, if you move your post using the actions panel on the right. You can move it to the link below.
Login to the FXOS chassis manager.
Direct your browser to https://hostname/, and log-in using the user-name and password.
Go to Help > About and check the current version:
Check the current version availa...
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...