Log shows "Received Unencrypted Packet in Crypto Active state"

Description

The Log shows "Received unencrypted Packet in Crypto Active State" message when the Pre-Shared Keys does not match on the VPN policies.


Logs on Initiator VPN device:
Image

Logs on Responder VPN device:
Image


Resolution for SonicOS 7.X

This release includes significant user interface changes and many new features that are different from the SonicOS 6.5 and earlier firmware. The below resolution is for customers using SonicOS 7.X firmware.


1. Login to the SonicWall Management Interface
2. Edit the appropriate VPN policy under  Network | IPSec VPN | Rules and Settings | Policies 
3. Ensure that both the Shared Secret is identical on both the VPN devices.
4. Repeat the same steps on other VPN device.

    

    Image


Resolution for SonicOS 6.5

This release includes significant user interface changes and many new features that are different from the SonicOS 6.2 and earlier firmware. The below resolution is for customers using SonicOS 6.5 firmware.


1. Login to the SonicWall Management Interface
2. Edit the appropriate VPN policy under  Manage | VPN | Base Settings page
3. Ensure that both the Shared Secret is identical on both the VPN devices.
4. Repeat the same steps on other VPN device.

Image

Resolution for SonicOS 6.2 and Below

The below resolution is for customers using SonicOS 6.2 and earlier firmware. For firewalls that are generation 6 and newer we suggest to upgrade to the latest general release of SonicOS 6.5 firmware.


1. Login to the SonicWall Management Interface
2. Edit the appropriate VPN policy under VPN | Settings page
3. Ensure that both the Shared Secret is identical on both the VPN devices.
4. Repeat the same steps on other VPN device.

Image

Related Articles

  • SonicOS 8.1.0 FAQ
    Read More
  • SonicWall GEN8 TZs and GEN8 NSas Settings Migration
    Read More
  • Getting started with SonicWall firewalls
    Read More
not finding your answers?