
Tech Tip
Contivity Secure IP Services Gateway
Configuring Branch Office Tunnel between a Contivity and a BayRS
router
SSHELL> kexit
Exiting Secure Shell session.
3. Bounce IPSec with the follow commands
$ s wfIpsecBase.2.0 2;commit
$ s wfIpsecBase.2.0 1;commit
$
Contivity troubleshooting tips
Interpreting Log Messages on the Contivity
09/16/2004 15:09:40 0 ISAKMP [13] Diffie-Hellman group mismatch for
10.1.1.1 - terminating connection attempt
This message indicates a mismatch in the Diffie-Hellman configuration. The Diffie-Hellman Group
is configurable on the Contivity through the GUI under ProfilesÆBranch Office ÆIPSec Group
Configuration.
09/16/2004 15:22:58 0 tIsakmp [34] Failed Remote Network Login:
Username=: Date/Time=09/16/2004 15:22:58
This message generally indicates a mismatch in the Local/Remote network pairs between the
Contivity and the Router. These are configurable through ProfilesÆBranch
OfficeÆConnections
09/16/2004 15:17:39 0 tIsakmp [34] Failed Login Attempt:
Username=10.1.1.1: Date/Time=09/16/2004 15:17:39
The “Failed Login Attempt” message generally indicates a mismatch in the Pre-Shared Key or
possibly a mismatch in the Local/Remote network pairs. The Pre-Shared Key and the
Local/Remote networks are configurable on the Contivity through the GUI under
ProfilesÆBranch OfficeÆConnections.
TT040916 1.00 September 2004 Page: 21 of 29
Comentarios a estos manuales