Quantcast
Channel: All SRX Services Gateway posts
Viewing all articles
Browse latest Browse all 17645

BAD SPI messages in the event log ( Juniper SRX )

$
0
0

Hi 

 

   I have a question about IP Sec VPN Connection  Checkpoint > Juniper 

 

Some times I found error message from Juniper SRX

 

[1297]: IKE negotiation failed with error: SA unusable. IKE Version: 1, VPN: XXX Gateway: XXXX, Local: xx.xx.xx.xx/500, Remote: xxx.xxx.xxx.xxx/500, Local IKE-ID: Not-Available, Remote IKE-ID: Not-Available, VR-ID: 4

 

RT_IPSEC: RT_IPSEC_BAD_SPI: IPSec tunnel on int reth1.2101 with tunnel ID 0x2000d received a packet with a bad SPI. xxx.xx.xx.xx->xx.xx.xx.xx/216, ESP, SPI 0xe604bddb, SEQ 0x1bfbb.

 

and I see in the KB Information but product is juniper Netscreen

 

 https://kb.juniper.net/InfoCenter/index?page=content&id=KB10091&actp=search

 

  It's can use for reference to Juniper SRX or not ?

 

 If Someone here have  experience with 

 

IP Sec VPN checkpoint and Juniper srx  please suggest solution or basic investigate problem

 

Thanks you 

BR,

Ake V

 

 

 


Viewing all articles
Browse latest Browse all 17645

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>