10-12-2020 09:10 AM
Hi Heroes,
has anyone already managed to connect an AP150W to a third-Party Firewall with IPSec? I always get the error “Aggressive Mode ID not matching” on conecntrator side. I tried with Watchguard and Sophos Firewalls - same error for both manufactorers.
KR
Marco
Solved! Go to Solution.
04-09-2021 04:14 PM
Folks,
trouble with IQEngine-based gear (cloud APs and XRs) is that they use IPSEC implementation that is just old. It only supports IKEv1 and is somewhat rigid with attributes etc.
There is work underway to upgrade IPSEC to modern standards, at which point you will be able to terminate tunnels on any decent GW, for instance XCC or VOSS FIGW, if that matters
10-29-2020 08:56 AM
Marco,
I never tried this but the error messages seems to indicate an issue in the IPSec phase1.
Try to disable the “aggressive mode”.
Mig