This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

INVALID_MAJOR_VERSION Cisco VPN client for iOS

Daer all,

We are facing a problem with error INVALID_MAJOR_VERSION:

2022:02:28-14:57:36 xxx pluto[6663]: packet from 151.0.0.0:22018: ISAKMP version of ISAKMP Message has an unknown value: 249
2022:02:28-14:57:36 xxx pluto[6663]: packet from 151.0.0.0:22018: sending notification INVALID_MAJOR_VERSION to 151.0.0.0:22018

2022:02:28-14:57:36 xxx pluto[6663]: | **emit ISAKMP Message:
2022:02:28-14:57:36 xxx pluto[6663]: | initiator cookie:
2022:02:28-14:57:36 xxx pluto[6663]: | 00 00 00 00 3b 72 e9 17
2022:02:28-14:57:36 xxx pluto[6663]: | responder cookie:
2022:02:28-14:57:36 xxx pluto[6663]: | c5 e1 de 8c aa 12 fc a4
2022:02:28-14:57:36 xxx pluto[6663]: | next payload type: ISAKMP_NEXT_N
2022:02:28-14:57:36 xxx pluto[6663]: | ISAKMP version: ISAKMP Version 1.0
2022:02:28-14:57:36 xxx pluto[6663]: | exchange type: ISAKMP_XCHG_INFO
2022:02:28-14:57:36 xxx pluto[6663]: | flags: none
2022:02:28-14:57:36 xxx pluto[6663]: | message ID: 00 00 00 00
2022:02:28-14:57:36 xxx pluto[6663]: | ***emit ISAKMP Notification Payload:
2022:02:28-14:57:36 xxx pluto[6663]: | next payload type: ISAKMP_NEXT_NONE
2022:02:28-14:57:36 xxx pluto[6663]: | DOI: ISAKMP_DOI_IPSEC
2022:02:28-14:57:36 xxx pluto[6663]: | protocol ID: 1
2022:02:28-14:57:36 xxx pluto[6663]: | SPI size: 0
2022:02:28-14:57:36 xxx pluto[6663]: | Notify Message Type: INVALID_MAJOR_VERSION
2022:02:28-14:57:36 xxx pluto[6663]: | emitting 0 raw bytes of spi into ISAKMP Notification Payload
2022:02:28-14:57:36 xxx pluto[6663]: | spi
2022:02:28-14:57:36 xxx pluto[6663]: | emitting length of ISAKMP Notification Payload: 12
2022:02:28-14:57:36 xxx pluto[6663]: | emitting length of ISAKMP Message: 40
2022:02:28-14:57:36 xxx pluto[6663]: | next event EVENT_RETRANSMIT in 1 seconds for #73

WE have upgraded to the last version Sophos UTM 9.709-3 and we are using diferent versions of iOS - 12.5.5 to 15.3.1 with native client. All certificates are up-to-date.

Loks like handshake does notwork and we have on the device error: Notification with the VPN server failed.



This thread was automatically locked due to age.