Thursday, December 3, 2009

Phase 2: No policy exists for the proxy ID received

##Netscreen firewall problem I ran into.##

IKE<67.220.55.162> Phase 2: No policy exists for the proxy ID received: local ID (<192.168.197.43>/<255.255.255.255>, <0>, <0>) remote ID (<172.25.0.0>/<255.255.255.0>, <0>, <0>).

- This error message happens because the ip address the remote side is trying to connect to doesn't match the proxy-id (config under Autokey IKE, advanced).
- Also the remote id was set to the entire /24 instead of the exact ip /32.

No comments:

Post a Comment