Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Mike Lewis on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Help!! VPN Tunnel Failure -- VPN Phone 9620 with Netgear Router FVS336

Status
Not open for further replies.

tobor2bnot

Technical User
Nov 8, 2012
12
US
I am new in the Avaya world so I have never set up a vpn nor have I worked with Avaya IP phones before. I am working on an Avaya IP office 500 V2 firmware 8.1 Trying to set up a VPN Phone 9620L with a netgear FSV336Gfirewall. I am up to where the phone tries to tunnel into the router but i get an error ( VPN tunnel failure ) then i press details and it says IKE Phase 1 no response. can anyone help.

 
Adding more details to my previous post.
The connection status on Netgear router shows IPSec SA Not established.
VPN 9620 handset settings looks like:-

VPN - Enabled
VPN Vendor :- Juniper\Netscreen
Gateway Address:- Static IP of Netgear FVS336 Router
External Phone IP Address :- Remote LAN IP (Obtained thru DHCP)
External Router :- Remote LAN IP (Obtained thru DHCP)
External Subnet Mask:- Remote LAN IP (Obtained thru DHCP)
External DNS:- Remote LAN IP (Obtained thru DHCP)
Encapsulation:- 4500-4500
Copy TOS - No
Auth Type :- PSK with XAUTH
VPN User Type:- 1 User
VPN User :- vpnphone
Password :- 123456789
Password type :- Save in Flash

IKE ID(Group Name) :- fvs_remote
Pre-Shared Key(PSK):- 123456789


IKE ID Type:- FQDN
IKE Xchg Mode :- Aggressive
IKE DH Group:- 2
IKE Encryption Alg:- 3DES
IKE Auth. Alg. SHA-1
IKE Config. Mode :- Enabled

IPsec PFS DH Group:- 2
IPsecc Encryption Alg:- 3DES
IPsec Auth. Alg. :- SHA-1
Protected Network :- 0.0.0.0/0
IKE Over TCP:- Auto

The VPN tunnel estalishment failed with IKE Phase 1 no response Error.

Any help would be much appreciated.

 
@tlpeter I used the same doc to configure it the first time... It just keep showing Ike Phase 1 no response... I also verified all the negotiation parameters between Netgear Router n 9620L. Any help would be much appreciated..
 
It is hard to tell what is going on.
Do you see any VPN attempt on the router logs from the phone at all?


BAZINGA!

I'm not insane, my mother had me tested!

 
Put the IPO side LAN in the Protected Network field. (eg. 192.168.1.0/24). I vaguely remember having to do that to get mine to work.

I have dreamed a dream, but now that dream has gone from me.
 
Thanks guys for you help... i could get the VPN things up and running now !!!
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top