09-15-2009 02:18 PM
Greetings All,
I am trying to bring standard site to site vpn connection between two sites. Site A and Site B.
Site A has a server (SeverOne)and site B WILL have a server (ServerTwo).
Now Im trying to bring up the VPN tunnel by pinging at this point a NON-EXISTENT server (ServerTwo) from the ServerOne.
SO the question is will this tunnel come up even though the server at site B is still not online? So far my tunnel is not passing phase 1.
Thanks in advance
Solved! Go to Solution.
09-15-2009 09:23 PM
SO the question is will this tunnel come up even though the server at site B is still not online?
Absolutely.. tunnel should still come up even though the host at other end does not respond.. you still should see phase 1/2 complete, and note in the output of (show crypto isakmp sa) in your firewall tunnel state as QM_IDLE and see peer tunnel address and your tunnel address.. you will only see encrypts but no decryps in the output of (show crypto ipsec sa) when sending pings to a system that is not online ... so if your tunnel makes it as far as phase1 something is wrong , either in your ike policy not matching or peer not responding..
09-15-2009 09:23 PM
SO the question is will this tunnel come up even though the server at site B is still not online?
Absolutely.. tunnel should still come up even though the host at other end does not respond.. you still should see phase 1/2 complete, and note in the output of (show crypto isakmp sa) in your firewall tunnel state as QM_IDLE and see peer tunnel address and your tunnel address.. you will only see encrypts but no decryps in the output of (show crypto ipsec sa) when sending pings to a system that is not online ... so if your tunnel makes it as far as phase1 something is wrong , either in your ike policy not matching or peer not responding..
08-24-2010 01:04 PM
I know it's been a year (almost) but thanks.. this was helpfull
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide