Critical Errors In Security Log



Hi All,

Philip W., maybe you can help me out once again?

I have successfully set up a site-to-site connection between 2
offices, one of which is using ISA 2004. We have no issues with
connectivity, however I continue to get these security messages in my
Server Reporting. Does anyone know what this means? I have been
unsuccessful in finding the problem on line.

Critical Errors in Security Log
Source: Security
Event ID: 547
Total Occurrences: 312

IKE security association negotiation failed. Mode: Data Protection
Mode (Quick Mode) Filter: Source IP Address 10.0.0.0 Source IP Address
Mask 255.255.255.0 Destination IP Address 10.x.xx.xxDestination IP
Address Mask 255.255.255.0 Protocol 0 Source Port 0 Destination Port 0
IKE Local Addr 2xx.xxx.x.xxx IKE Peer Addr 64.xx.xxx.xx IKE Source
Port 500 IKE Destination Port 500 Peer Private Addr Peer Identity:
Preshared key ID. Peer IP Address: 64.xx.xx.xx Failure Point: Me
Failure Reason: The application attempted to activate a disabled
activation context. Extra Status: Processed third (ID) payload
Responder. Delta Time 0 0x0 0x0

It's not causing any problems but I would like to make these errors go
away if I can.

Thanks in advance for any help/suggestions you may have.

Linda
.



Relevant Pages

  • Re: Critical Errors In Security Log
    ... Critical Errors in Security Log ... IKE security association negotiation failed. ... IKE Local Addr 2xx.xxx.x.xxx IKE Peer Addr 64.xx.xxx.xx IKE Source ... Port 500 IKE Destination Port 500 Peer Private Addr Peer Identity: ...
    (microsoft.public.isaserver)
  • Re: VPN using L2TP
    ... > IKE security association established. ... > Peer Identity: ... > Certificate based Identity. ... > Destination Port 0 ...
    (microsoft.public.windows.server.sbs)
  • L2TP/IPsec problem - IKE SA deleted by peer before establishment completed
    ... Address 166.154.128.144, Protocol 17, Port 1701 ... IKE security association negotiation failed. ... Destination IP Address Mask 255.255.255.255 ... IKE Peer Addr ...
    (microsoft.public.windows.server.security)
  • Re: [fw-wiz] netscreen 25 sofaware ipsec interop
    ... Checkpoint SOFAWARE 4.0.41 appliances. ... peer, as peer IKE ID. ... My problem is that i cannot pass phase 1 (IKE). ... netscreens AutoKey->GateWay configuration dialog. ...
    (Firewall-Wizards)
  • Win2K3sp1 Server: IPSec tunnel drops out for some reason, pls help
    ... Security Log (on Windows server) ... IKE security association negotiation failed. ... IKE Source Port 4500 ... Peer Private Addr ...
    (microsoft.public.windows.server.networking)