I am trying to configure ipsec Site-to-site VPN between the Head and branch offices. The Head office is a Sophos UTM SG 210 configured as the responder (Repond-Only), and the branch Firewall is a Sophos XGS configured as the initiator.
The Head office SG210 firewall had three other site-to-site VPN connections all in respond-Only mode to the SG210
After the configuration was established the following error Log kept showing:
pre-shared key looks good, try something very simple like just numeric only or alphabetic only and ensure to deactive the tunnel completely and then re-initiate it again. You can keep XG on respond only and UTM 9 to initiate the connection. Like mentioned here - Configure a Site-to-site IPsec VPN connection between Sophos Firewall and UTM using a preshared key
Thanks & Regards,
_______________________________________________________________
Vivek Jagad | Team Lead, Technical Support, Global Customer Experience
Log a Support Case | Sophos Service Guide
Best Practices – Support Case | Security Advisories
Compare Sophos next-gen Firewall | Fortune Favors the prepared
Sophos Community | Product Documentation | Sophos Techvids | SMS
If a post solves your question please use the 'Verify Answer' button.