Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

IPSec and Cisco ASA - Problem with Phase 1

Hello everybody,

currently I try to connect my XG 85 to a Cisco ASA Firewall via Site-to-Site IPsec connection.

First it seems to work. The Connection state was green, but it wasn't possible to pass traffic through the connection.

After a look in the log files I found this error:

IPsec
SUCCESSFUL
-
EST-P1: Peer did not accept any proposal sent

The settings are the same on both sites:

I also tried it with SHA2 256, at which the Cisco Support announced: "Please use SHA1, it seems that the Sophos has a bug and can not uitilze SHA256 correctly."



This thread was automatically locked due to age.