User guide
Table Of Contents
- 1 Introduction
- 2 Cisco SA 520W Security Appliance VPN configuration
- 3 TheGreenBow IPSec VPN Client configuration
- 4 Tools in case of trouble
- 5 VPN IPSec Troubleshooting
- 5.1 « PAYLOAD MALFORMED » error (wrong Phase 1 [SA])
- 5.2 « INVALID COOKIE » error
- 5.3 « no keystate » error
- 5.4 « received remote ID other than expected » error
- 5.5 « NO PROPOSAL CHOSEN » error
- 5.6 « INVALID ID INFORMATION » error
- 5.7 I clicked on “Open tunnel”, but nothing happens.
- 5.8 The VPN tunnel is up but I can’t ping !
- 6 Contacts

Doc.Ref tgbvpn_cg-cisco-SA500-series-en
Doc.version 3.0 – May 2010
VPN version 4.x
IPSec VPN Router Configuration Property of TheGreenBow Sistech SA - © 2001-2010 9/14
4 Tools in case of trouble
Configuring an IPSec VPN tunnel can be a hard task. One missing parameter can prevent a VPN connection
from being established. Some tools are available to find source of troubles during a VPN establishment.
4.1 A good network analyser: Wireshark
Wireshark is a free software that can be used for packet and traffic analysis. It shows IP or TCP packets received
on a network card. This tool is available on website http://www.wireshark.org
. It can be used to follow protocol
exchange between two devices. For installation and use details, read its specific documentation
(http://www.wireshark.org/docs/
).