You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
FortiGate seems to send ikev2_send_delete_by_spi with the phase 1 SPI tag, up to a minute after phase 2 is established.
There's also "received unknown SPI" messages with phase 1 SPI tag after phase 2 is established, which FortiGate follows up with "ignoring invalid SPI, SA negotiated", but then it runs the delete after anyway.
Unsure if it's a L3 misconfig, IPsec misconfig, or cipher misconfig.
The text was updated successfully, but these errors were encountered:
FortiGate seems to send
ikev2_send_delete_by_spi
with the phase 1 SPI tag, up to a minute after phase 2 is established.There's also "received unknown SPI" messages with phase 1 SPI tag after phase 2 is established, which FortiGate follows up with "ignoring invalid SPI, SA negotiated", but then it runs the delete after anyway.
Unsure if it's a L3 misconfig, IPsec misconfig, or cipher misconfig.
The text was updated successfully, but these errors were encountered: