Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Community Member

VPN between ASA 5520 and Cyberoam

Hi

I am trying to make IPsec L2L vpn between ASA and cyberoam but i get the following message while start debug on ASA. Please help me out in resolving the issue.

Sep 21 19:04:21 [IKEv1]: Group = 10.10.10.70, IP = 10.10.10.

70, construct_ipsec_delete(): No SPI to identify Phase 2 SA!

Sep 21 19:04:21 [IKEv1]: Group = 10.10.10.70, IP = 10.10.10.70, Removing pee

r from correlator table failed, no match!

Thanks in advance

1 REPLY
Community Member

Re: VPN between ASA 5520 and Cyberoam

Hi

I would check match both sides as if the subnets don't match you will get:

construct_ipsec_delete(): No SPI to identify Phase 2 SA!

followed by the drop error.

just check to make sure the subnet of the host machine your attempting to connect to is correct.

Regards MJ

883
Views
0
Helpful
1
Replies
CreatePlease to create content