Hi, Having difficulty in trying to get Meraki to complete phase 2 with a Cisco 2911 router, below is the message i get on the router as soon as I try and ping anything on the other side Apr 26 09:59:09.423: IPSEC(ipsec_process_proposal): peer address XXXX not found Apr 26 09:59:09.423: ISAKMP:(7813): IPSec policy invalidated proposal with error 64 Apr 26 09:59:09.423: ISAKMP:(7813): phase 2 SA policy not acceptable! (local XXXX remote XXXXXX) Apr 26 09:59:09.423: ISAKMP: set new node -10487433 to QM_IDLE Router# Apr 26 09:59:09.423: ISAKMP:(7813):Sending NOTIFY PROPOSAL_NOT_CHOSEN protocol 3 spi 822512632, message ID = 4284479863 Apr 26 09:59:09.423: ISAKMP:(7813): sending packet to XXXX my_port 4500 peer_port 4500 (R) QM_IDLE Apr 26 09:59:09.423: ISAKMP:(7813):Sending an IKE IPv4 Packet. Apr 26 09:59:09.423: ISAKMP:(7813):purging node -10487433 Apr 26 09:59:09.423: ISAKMP:(7813):deleting node -1212514309 error TRUE reason "QM rejected" Apr 26 09:59:09.423: ISAKMP:(7813):Node 3082452987, Input = IKE_MESG_FROM_PEER, IKE_QM_EXCH Apr 26 09:59:09.423: ISAKMP:(7813):Old State = IKE_QM_READY New State = IKE_QM_READY As far as I can see on both Meraki and the router phase 1 and phase 2 are identical and the ACL on the router matches the route I have on Meraki. What is strange is we have another Meraki instance (i don't have access too) that connects to the same router with the same configuration I'm told. Phase 1 has completed so it appears the two are connected but I'm unable to send traffic down the tunnel. I have raised a case but thought I'd post on here and see if anyone else had same issues or can point maybe what I'm doing wrong/what i need to check etc..
... View more