Jun 25, 2010

Solved it. VPN seems to be working now. I don't know why, but the entry in /etc/sysconfig/iptables which allows all outbound DMZ traffic without filtering was not present in the file. C831 site to site VPN error.. - TechRepublic Local Tunnel Endpoint 65.103.174.121 Local Subnet 172.16.28.0 Local Mask 255.255.255.224 Remote Tunnel Endpoint 24.153.138.34 Remote Subnet 10.0.0.0 IPSec Connection Troubleshooting :: Chapter 19. IPSec Site MM_NO_STATE. During IKE Phase 1 main mode, the management SA was created on the router, but nothing has been negotiated with the remote peer. MM_SA_SETUP. During IKE Phase 1 main mode, both IPSec peers successfully negotiated the IKE policy parameters. MM_KEY_EXCH AWS Developer Forums: VPN Tunnel will not come up - Phase May 10, 2012

MM_NO_STATE - ACTIVE (Deleted) in S2S IPSec VPN

Configuring IPSec Router-to-Router Hub and Spoke with

MM_NO_STATE. During IKE Phase 1 main mode, the management SA was created on the router, but nothing has been negotiated with the remote peer. MM_SA_SETUP. During IKE Phase 1 main mode, both IPSec peers successfully negotiated the IKE policy parameters. MM_KEY_EXCH

ISAKMP (IKE Phase 1) Status Messages MM_WAIT_MSG Troubleshooting ISAKMP Or Phase 1 VPN connections. When troubleshooting VPNs, a very common problem is phase 1 not establishing correctly. Here’s a quick checksheet to make sure you have the configuration correct. Verify ISAKMP parameters match exactly. Verify pre-shared-keys match exactly. Unusual access | DSLReports, ISP Information