Troubleshooting
26 Administrator Guide
Server
authentication
mechanism
failing
Yes N/A An externally
configured
authentication
source (Radius
Server) and
Security Gateway
cannot
communicate.
Verify
communication
with external
authentication
source.
IKE Phase 1 no
response
Yes Yes Security device is
busy.
For all Profiles:
Security device
cannot be reached
because the
firewall is blocking
incoming UDP
packets on port
500. This is on the
security device
side or home
router is blocking
outgoing UDP
packets on port
500.
For third-party
profile:
Group Name (IKE
ID) is incorrect.
IKE ID type is
incorrect.
Phase 1 proposal
mismatch.
For all Profiles:
Verify that the
firewall accepts
UDP packets on
port 500.
Verify that the
security device
allows outgoing
UDP packets on
port 500.
For third-party
profiles:
Verify group name.
Verify IKE IK type.
Verify phase 1
proposal.
Table 3: VPN Tunnel Setup Failures (continued)
Error Message Avaya
Profile
Third-Party
Profile
Possible Cause Possible Solution
2 of 4