The log shows "Received Notify: No Proposal Chosen"
08/03/2020 1,266 People found this article helpful 131,974 Views
The log message "Received notify: No_Proposal_Chosen" indicates there is a mismatch of proposals during phase 1 or phase 2 negotiation between a site-to-site VPN.
Logs on Initiator
The logs on the Responder SonicWall will clearly display the exact problem, ensure that the Proposals are identical on both the VPN policies.
Logs on Responder
- Log into the SonicWall GUI.
- Click Manage in the top navigation menu.
- Go to VPN | Base Settings and click the configure icon next to the appropriate VPN SA name.
- On the Proposals tab, make sure the IKE (Phase 1) proposal and IPSec (Phase 2) proposal is identical to the remote firewall.
NOTE: Make also sure the Perfect Forward Secrecy settings match on the local and remote firewall.
NOTE: In a Manual key configuration, the incoming SPI for the main site is the outgoing SPI for the remote site and vice versa.
Was This Article Helpful?