Support Center > Search Results > SecureKnowledge Details
Security Gateway accepts another Diffie-Hellman group then what is configured
Symptoms
  • When the VPN peer is initiating IKE negotiation with Security Gateway, and is sending another Diffie-Hellman group then what is configured in the VPN community, the Security Gateway accepts it, and later the VPN traffic is dropped.
Cause

Configuration mismatch - Perfect Forward Secrecy was configured on the Security Gateway, but not on the VPN peer.


Solution
Note: To view this solution you need to Sign In .