Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

Sophos XGS IPESEC to Fortinet Firewall

Hello,

We are having problems establishing an IPSEC tunnel between an XGS and a Fortigate firewall. Currently we receive the message

“IKE SA proposals don't match. Check the phase 1 policy settings on both devices: IKE:AES_CBC_256/HMAC_MD5_96/PRF_HMAC_MD5/MODP_1536/MODP_2048”

We have compared the policy settings. What else could be the problem?

We use the identical encryption for several connections between Sophos XGS and Fortigate Firewall and some connections work, others do not



Added TAGs
[edited by: Erick Jan at 2:47 PM (GMT -7) on 17 Jul 2024]