GVC stuck at connecting for users
07/01/2022 295 People found this article helpful 359,480 Views
Description
Even after configuring WAN group VPN correctly on the firewall, users still face issues with connecting to Global VPN client as it gets stuck at connecting..
For such situations, kindly follow the below steps.
Resolution
Resolution for SonicOS 7.X
This release includes significant user interface changes and many new features that are different from the SonicOS 6.5 and earlier firmware. The below resolution is for customers using SonicOS 7.X firmware.
- Kindly check the Global VPN client logs, if you are seeing "The peer is not responding to phase 1 ISAKMP requests", follow the KB article The peer is not responding to phase 1 ISAKMP requests.
- Verify that the user is not in the same local network of the firewall, make sure the user is outside the local network.
- If there is any NATTing device upstream the firewall, make sure port forwarding is configured on the upstream router to allow UDP 500,4500 ports.
Also make sure on the firewall, navigate to Network | IPsec VPN | Advanced | Enable Nat Traversal is enabled.
- Kindly run a packet capture on the firewall for UDP ports 500,4500 and validate if the packets are reaching the firewall.
Utilize the KB for configuring packet monitor: How can I setup and utilize the Packet Monitor feature for troubleshooting? - Even after following the above steps, if you are still not able to connect, kindly contact our support team
There are two ways to contact technical support:
1. Online: Visit mysonicwall.com. Once logged in select Resources & Support | Support | Create Case.
2. By phone: please use our toll-free number at 1-888-793-2830. Please have your SonicWall serial number available to create a new support case.
If you do not have a mysonicwall.com account create one for free!
Resolution for SonicOS 6.5
This release includes significant user interface changes and many new features that are different from the SonicOS 6.2 and earlier firmware. The below resolution is for customers using SonicOS 6.5 firmware.
- Kindly check the Global VPN client logs, if you are seeing "The peer is not responding to phase 1 ISAKMP requests", follow the KB article The peer is not responding to phase 1 ISAKMP requests.
- Verify that the user is not in the same local network of the firewall, make sure the user is outside the local network.
- If there is any NATTing device upstream the firewall, make sure port forwarding is configured on the upstream router to allow UDP 500,4500 ports.
Also make sure on the firewall, navigate to Manage|VPN | Advanced Settings | Enable Nat Traversal is enabled.
- Kindly run a packet capture on the firewall for UDP ports 500,4500 and validate if the packets are reaching the firewall.
Utilize the KB for configuring packet monitor: How can I setup and utilize the Packet Monitor feature for troubleshooting?
- Even after following the above steps, if you are still not able to connect, kindly contact our support team
There are two ways to contact technical support:
1. Online: Visit mysonicwall.com. Once logged in select Resources & Support | Support | Create Case.
2. By phone: please use our toll-free number at 1-888-793-2830. Please have your SonicWall serial number available to create a new support case.
If you do not have a mysonicwall.com account create one for free!
Related Articles
Categories
Was This Article Helpful?
YESNO