当前位置:网站首页>FortiGate firewall and Aruze cloud tunnel interruption
FortiGate firewall and Aruze cloud tunnel interruption
2022-06-30 04:16:00 【Call me a little match】
Configuration scenarios :
This article mainly explains FortiGate Firewall and Aruze Cloud building IPSECVPN after , How to deal with the problem of tunnel interruption .
Configuration steps :
1. We are configuring firewalls and Aruze The cloud IPSECVPN After tunnel , Normal tunnel establishment , Data at both ends can also be accessed normally , At the same time, both ends are also provided with link-monitor monitor , But most of the time, the tunnel will be interrupted in oneortwo days , adopt Aruze You can see from the firewall log on the cloud “peer SA proposal not match local policy” Error of , Here's the picture :

2. In this case, it is generally caused by inconsistent parameters in phase 2 .
Aruze On the cloud IPSECVPN Tunnel phase II generally does not DH Group selection , So in stage 2, I often choose None

Corresponding FortiGate The firewall needs to PFS Function off :

After that, the tunnel will not be interrupted frequently because some parameters are inconsistent .

边栏推荐
- Geometric objects in shapely
- Errno and PERROR
- JS inheritance
- Interface test tool postman
- The school training needs to make a registration page. It needs to open the database and save the contents entered on the registration page into the database
- Jour 9 Gestion des scripts et des ressources
- RPC correction
- Interpretation score of bilstm-crf in NER_ sentence
- GIS related data
- Day 12 advanced programming techniques
猜你喜欢

GIS related data

The school training needs to make a registration page. It needs to open the database and save the contents entered on the registration page into the database

MySQL DDL change

A solution to the problem of "couldn't open file /mnt/repodata/repomd.xml"

Huawei cloud native - data development and datafactory

Linear interpolation of spectral response function

基于ROS的SLAM建图、自动导航、避障(冰达机器人)

Basic knowledge of redis

iMile 利用 Zadig 多云环境周部署千次,跨云跨地域持续交付全球业务
![[Thesis reading | deep reading] role2vec:role based graph embeddings](/img/69/c94700fbbbda20df4e54803c703b48.png)
[Thesis reading | deep reading] role2vec:role based graph embeddings
随机推荐
[fuzzy neural network prediction] water quality prediction based on fuzzy neural network, including Matlab source code
[Thesis reading | deep reading] role2vec:role based graph embeddings
The same node code will cause duplicate data
Day 10 data saving and loading
FortiGate firewall filters the specified session and cleans it up
win10系统使用浏览器下载后,内容无故移动或删除
管道实现进程间通信之命名管道
Robot slam navigation core technology and practice Season 1: Chapter 0_ Slam development overview
两个月拿到N个offer,什么难搞的面试官在我这里都不算事
JS generator
工程安全和工程质量
第十一天 脚本与游戏AI
Maya Calendar(POJ1008)
oslo_ config. cfg. ConfigFileParseError: Failed to parse /etc/glance/glance-api. Conf: a solution to errors
base64.c
JS reflect
尝试链接数据库时出现链接超时报错,如何解决?
iMile 利用 Zadig 多云环境周部署千次,跨云跨地域持续交付全球业务
lego_ Reading and summary of loam code
Iterator of JS