Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

IPSEC VPN definitions

Hi

I am trying to get an Avaya Phone to connect to XG IPSEC VPN

There is a break in terminology between the two. The Avaya Phone asks for "IKE ID (Group Name)", where is that in the XG?

I ran the wizard to setup the connection on the XG and activated it but i constantly get "IKE Phase 1 no response" on the Avaya phone and i don't know why. Is there a way to diagnose on the XG?

I am not an IT guru so please bear with me



This thread was automatically locked due to age.
Parents
  • Hi again

    i found this in the console but have no idea what the errors mean

    Sophos Firmware Version SFOS 16.05.5 MR-5

    console> show vpn IPSec-logs
    Jun 29 09:52:54 Changing to directory '/conf/certificate/aacerts'
    Jun 29 09:52:54 Changing to directory '/conf/certificate/ocspcerts'
    Jun 29 09:52:54 Changing to directory '/conf/certificate/crls'
    Jun 29 09:52:54 loaded crl file 'Default.tar.gz' (673 bytes)
    Jun 29 09:52:54 file coded in unknown format, discarded
    Jun 29 09:52:54 loaded crl file 'Default.crl' (747 bytes)
    Jun 29 09:52:54 digest algorithm not supported
    Jun 29 09:52:54 loaded crl file 'ClientAuthentication_CA.crl' (698 bytes)
    Jun 29 09:52:54 crl issuer cacert not found for (file:///conf/certificate/crls/ClientAuthentication_CA.crl\352\020\010\220\240pw"\315aw)
    Jun 29 10:01:16 added connection description "avayaremote-1"

    This does not look right to me "digest algorithm not supported"

  • Jon,

    can you share the VPN Configuration you are using?

    Thanks

Reply Children