Failure to establish an IPsec tunnel

Symptom

The expected IPsec tunnel cannot be established.

Analysis

Sometimes this may happen that an IPsec tunnel cannot be established or there is no way to communicate in the presence of an IPsec tunnel in an unstable network. According to examination results, however, ACLs of both parties are configured correctly, and IKE proposals are also matched.

In this case, the problem is usually caused by the reboot of one router after the IPsec tunnel is established.

Solution