If you have SonicWall Global VPN Client version 4.8.6 or earlier installed, you must uninstall that version before installing version 4.9.14.SonicWall strongly recommends you follow these steps before installing the Global VPN Client (GVC) 4.9.14 (or higher) client. For upgrade and installation support, please review the Administrator's Guide for the relevant version of GVC.This error can occur when the ISAKMP packet is fragmented due to its size, but the network device (router) does not allow a fragmented packet when establishing the VPN connection. Restrict the size of the first ISAKMP packet sent - This option can be used when the Global VPN Client gets an error such as, The peer is not responding to phase 1 ISAKMP requests when attempting to connect.SonicWall Global VPN Client 4.9.14 provides a new connection property option. Possible Solution: Upgrade to 4.9.14 or higher Consult the NAT device manual or ISP to troubleshoot this problem. If the Peer gateway does not get the IKE packets, then it is the NAT device in the middle or ISP that is dropping the IKE packets. To verify if the IKE traffic from SonicWall GVC is reaching the Peer gateway, use the event logs (Network Debug Category enabled) or packet capture on the SonicWall appliance. It is possible that this NAT device is blocking IKE traffic and so requires a rule (policy) to allow IKE packets from SonicWall GVC.In order for SonicWall GVC to use the defined IKE source port, start GVC by right-clicking on the icon and then select ‘Run as administrator’. This is currently only a problem with GVC running on Vista. NAT device is blocking IKE traffic from SonicWall GVC (Vista OS) since it is not using defined UDP source port (500) for IKE. SonicWall GVC works from certain locations and this error message only shows up when you are behind certain NAT device. If you have other SonicWall GVC clients connecting to the same firewall on the same interface of the firewall, then this is not a problem. Verify the peer gateway is running and the Group VPN policy is enabled.If not, then fix this problem and then follow next step. Verify host running SonicWall GVC application has Internet connectivity and can browse the Internet. Troubleshooting steps and possible solutions are offered here that may help solve the problem. There are many possible reasons why this could happen. This message is a general failure message, meaning that a phase 1 ISAKMP request was sent to the peer firewall, but there was no response. This article provides information about the log entry The peer is not responding to phase 1 ISAKMP requests when using the global VPN client (GVC).
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |