This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Site to site VPN - ASL to ISA 2006

Hi.
 
Is there anyone outthere, that has a site to site VPN setup successfully between ASL 4.031 and Microsoft ISA 2006 (2004) ???
 
When I try to ping from the ISA server, it says "Negotiating IP Security."
 
It seems to me, that it is the phase II of the connection that fails.
 
Here is a part of the log:
 
000 "server_1": CAs: '%any'...'%any'
000 "server_1": ike_life: 38000s; ipsec_life: 3600s; rekey_margin: 540s; rekey_fuzz: 100%; keyingtries: 0
000 "server_1": policy: PSK+ENCRYPT+COMPRESS+TUNNEL+PFS; interface: eth1; unrouted
000 "server_1": newest ISAKMP SA: #2725; newest IPsec SA: #0; eroute owner: #0
000 "server_1": IKE algorithms wanted: 5_000-2-2, flags=-strict
000 "server_1": IKE algorithms found: 5_192-2_160-2, 
000 "server_1": IKE algorithm newest: 3DES_CBC_192-SHA-MODP1024
000 "server_1": ESP algorithms wanted: 3_000-2, ; pfsgroup=2; flags=-strict
000 "server_1": ESP algorithms loaded: 3_168-2_160 
 
Any ideas ????


This thread was automatically locked due to age.