This user is on a Satellite link and has a direct connection to the internet with a Public IP Address. Up until yesterday the link VPN connection was working ok. But in the afternoon it failed, and we cannot get it to work.
We have two other systems behind a NAT firewall who can access the VPN fine using NAT-T. So it doesn't appear to be an issue with the configuration on the terminating VPN device (837 Router).
We have checked the preshared key, the Cisco VPN Service is running, MTU set correctly, ip address is ok etc etc.
When we do a debug on the 837, the one message that I see that appears to be describing the problem is this:
Xauth authentication by pre-shared key offered but does not match policy!
This follows the matching of what appears to be the correct transform-set (3des, md5).
Login to the FXOS chassis manager.
Direct your browser to https://hostname/, and log-in using the user-name and password.
Go to Help > About and check the current version:
Check the current version availa...
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...