Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations gkittelson on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

ASA Firewall Message: Keep-alives configured on but peer does not supp

Status
Not open for further replies.

cchien

IS-IT--Management
Mar 12, 2007
3
US
I just established a site to site VPN connection by using ASA 5510 (ASA version 7.06). My remote firewall is using watchguard. After the VPN is established, the connection works except that watchguard always has to initialize the interesting traffic first to start the VPN connection. There seems no way ASA can start the VPN tunnel by sending the interesting traffic first. I dont worry about it because the traffic always start from the other side. However, I wonder if this has anything to do with the error messages that I keep getting.
I set the ASA firewall to send me messages by email. Then I keep getting this message
<163>%ASA-3-713122: IP = 12.133.22.45, Keep-alives configured on but peer does not support keep-alives (type = None)
And I also keep getting this kind of message.
<163>%ASA-3-713902: Group = 12.133.22.45, IP = 12.133.22.45, Removing peer from peer table failed, no match!
What does that mean? Is there something I need to do on my end is stop this error message?
Thank you for your help.
 
Hi

i think that can be easily taken care of .You need to ask the peer to add the keep alive option on his side .it is quite easy and can be done with a couple of clicks . I am also interested in knowing on what configuration was done on your side to make it work . I am trying here to establish a vpn between watchguard and asa but it is not working . can you tell me the part of config which needs to be done on ASA side .
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top