What's wrong with Site-to-Site VPN on Nebula Control Cente?

Nebula_IreneNebula_Irene Member Posts: 140  mod
edited December 14, 2017 5:53PM in Troubleshooting
When Site-to-Site VPN tunnel cannot be established successfully, please check the following actions,

  • If your Nebula Security Gateway (NSG) is behind NAT/Router,
  1. Go to Gateway > Configure > Site-to-Site VPN
  2. Check your NAT traversal, please enter your public IP in the block.
  • If your Nebula Security Gateway (NSG) is with public IP or you already have the correct NAT traversal,
  1. Go to Gateway > Monitor > Event log, and filter through VPN Category 
  • Remote IP mismatch: you configure the incorrect IP or NAT
  • NO_PROPOSAL_CHOSEN:  check IPsec policy (phase 1 and phase 2 setting) and Preshared secret are same in local and peer side. 

Sign In to comment.