IPsec VPN "Error in ESP proposal(s)"

I am a newbie to configuring VPN’s on AirLink routers and no networking expert.

That said, I am trying to configure an IPsec IKE2 tunnel between my Barracuda BG Firewall and a SW LX40. On the LX40, the VPN Status says “Error in ESP proposal(s)”
Any thoughts as to where I can go with troubleshooting this?

Hi @b.gorsky,

Welcome to our community!

Could you please take a look at the below question/concern and share your answers?

Thanks,

Standby on this, I appear to have a cellular connectivity issue going on now. Weird that it happening after I tried setting up the VPN. The device is on ALEOS 4.17 with current radio firmware for Verizon and I did follow the IPSec configuration instructions.

Once I get connected again, I’ll answer the other questions, post screenshot and logs. Thanks.

So I am back with cellular connectivity try to set up this IKEv2 IPSec VPN. The VPN status now says “Error Connecting.” The log is below and it appears that the first entry regarding the issue is;

Mar 28 14:31:23 [err ] ALEOS_VPN_SwanMgr establishing CHILD_SA ‘tunnel1’ failed

Any assistance you could provide would be appreciated.

LOG:
Mar 28 14:29:15 [notice ] ALEOS_LAN Starting dnsmasq
Mar 28 14:29:19 [debug ] ALEOS_FIRMWARE_rmswitchingcheck SDK pid is 776
Mar 28 14:29:19 [notice ] ALEOS_FIRMWARE_rmswitchingcheck Radio Module Version: > 02.37.06.00_VERIZON_002.107_003
Mar 28 14:29:19 [notice ] ALEOS_FIRMWARE_rmswitchingcheck Radio Module firmware version matches entry in database
Mar 28 14:29:19 [notice ] ALEOS_FIRMWARE_rmswitchingcheck #> Running Radio Module Version: 02.37.06.00_VERIZON_002.107_003
Mar 28 14:29:19 [notice ] ALEOS_FIRMWARE_rmswitchingcheck #> Stored Radio Module Version: 02.37.06.00_VERIZON_002.107_003
Mar 28 14:29:19 [notice ] ALEOS_FIRMWARE_rmswitchingcheck #----> Running and Stored Radio Module Versions match
Mar 28 14:29:20 [notice ] ALEOS_FIRMWARE_rmswitchingcheck ****************************************
Mar 28 14:29:20 [notice ] ALEOS_FIRMWARE_rmswitchingcheck PIN1 Status : 3
Mar 28 14:29:20 [notice ] ALEOS_FIRMWARE_rmswitchingcheck PIN1 Verify Retries Left : 3
Mar 28 14:29:20 [notice ] ALEOS_FIRMWARE_rmswitchingcheck PIN1 Unblock Retries Left : 10
Mar 28 14:29:20 [notice ] ALEOS_FIRMWARE_rmswitchingcheck ICCID prefix: 891480
Mar 28 14:29:21 [notice ] ALEOS_FIRMWARE_rmswitchingcheck MCC-MNC: 311-48, Verizon
Mar 28 14:29:21 [notice ] ALEOS_FIRMWARE_rmswitchingcheck MCC-MNC: 311-480, Verizon
Mar 28 14:29:21 [notice ] ALEOS_FIRMWARE_rmswitchingcheck #> Current Operator: VERIZON
Mar 28 14:29:21 [notice ] ALEOS_FIRMWARE_rmswitchingcheck #> Possible Operator: VERIZON
Mar 28 14:29:21 [notice ] ALEOS_FIRMWARE_rmswitchingcheck DONE
Mar 28 14:29:22 [notice ] ALEOS_CELL_RadioDiagnostic 7WpRmHal: radio module = ALEOS_RADIO_MODULE_WP7601 is active
Mar 28 14:29:22 [notice ] ALEOS_CELL_RadioDiagnostic Starting Radio Diagnostic
Mar 28 14:29:22 [err ] ALEOS_CELL_RadioDiagnostic Cannot find LOW POWER MODE in the radio response
Mar 28 14:29:22 [err ] ALEOS_CELL_RadioDiagnostic AT.GSTATUS command failed
Mar 28 14:29:22 [err ] ALEOS_CELL_RadioDiagnostic Unable to check low power mode
Mar 28 14:29:26 [notice ] ALEOS_CELL_RadioDiagnostic USB composition is 00000109
Mar 28 14:29:26 [notice ] ALEOS_CELL_RadioDiagnostic GPS rollover patching not supported for radio family
Mar 28 14:29:26 [notice ] ALEOS_CELL_RadioDiagnostic Radio already set to data only mode
Mar 28 14:29:26 [notice ] ALEOS_CELL_RadioDiagnostic Checking PCSCDISABLE…
Mar 28 14:29:26 [notice ] ALEOS_CELL_RadioDiagnostic Radio module diagnostic completed - No Action required
Mar 28 14:29:27 [notice ] ALEOS_SYSTEM_UpdateReboot Processing request from to applyradio
Mar 28 14:29:27 [notice ] ALEOS_SYSTEM_UpdateRebootMgr Applying Radio Module firmware
Mar 28 14:29:27 [alert ] ALEOS_FIRMWARE_RmUpdater No Radio Module Firmware Update pending
Mar 28 14:29:27 [notice ] ALEOS_CELL_RMAN PDPRadioManager::getInstance()
Mar 28 14:29:27 [notice ] ALEOS_CELL_RMAN P8Starting::run: Wait sim ready to launch service/cellradio
Mar 28 14:29:27 [notice ] ALEOS_CELL_RMAN P15PDPRadioManager::processMSCIID: launching service/cellradio
Mar 28 14:29:28 [notice ] ALEOS_CELL_DetectRadio 7WpRmHal: radio module = ALEOS_RADIO_MODULE_WP7601 is active
Mar 28 14:29:28 [alert ] ALEOS_CELL Radio Enumerated Successfully
Mar 28 14:29:30 [notice ] ALEOS_CELL SIM ready after 1 loop(s) - continuing
Mar 28 14:29:31 [notice ] ALEOS_CELL Launching RadioTask…
Mar 28 14:29:31 [notice ] ALEOS_CELL_RadioTask Starting quickConnect
Mar 28 14:29:31 [notice ] ALEOS_CELL_RadioTask Radio is a ALEOS_RADIO_MODULE_WP7601 - VERIZON
Mar 28 14:29:31 [notice ] ALEOS_CELL_RadioTask Radio_state → RADIO_STATE_INIT
Mar 28 14:29:31 [notice ] ALEOS_CELL_RadioTask 7WpRmHal: radio module = ALEOS_RADIO_MODULE_WP7601 is active
Mar 28 14:29:32 [notice ] ALEOS_SYSTEM_UpdateRebootMgr BootTimeReference: initng default run level completed [68.70] seconds since system startup]
Mar 28 14:29:32 [notice ] ALEOS_SYSTEM_UpdateRebootMgr Launching MCU manager
Mar 28 14:29:32 [notice ] ALEOS_SYSTEM_UpdateRebootMgr Launching Power manager
Mar 28 14:29:32 [notice ] ALEOS_SERVICES_McuManager Starting McuManager
Mar 28 14:29:32 [notice ] ALEOS_SERVICES_McuManager 12ToyotaMcuHal power_manager_wakeup_state: Power Manager State: 1.
Mar 28 14:29:32 [notice ] ALEOS_SERVICES_McuManager RegisterMcuNotification success
Mar 28 14:29:32 [notice ] ALEOS_SERVICES_McuManager ProcessMcuNotification - READY_AND_OPERATIONAL received from MCU on isr [1]
Mar 28 14:29:32 [notice ] ALEOS_SERVICES_McuManager 12ToyotaMcuHal download_mcu_image: Headers: running version: 02.08d521000998f9911156301
Mar 28 14:29:32 [notice ] ALEOS_SERVICES_McuManager 12ToyotaMcuHal download_mcu_image: Headers: file version: 02.08d521000998f9911156301
Mar 28 14:29:32 [notice ] ALEOS_SERVICES_McuManager No MCU Firmware Download required
Mar 28 14:29:32 [notice ] ALEOS_SERVICES_McuManager Configuration of ADC channel sensitivity successful
Mar 28 14:29:32 [notice ] ALEOS_SERVICES_McuManager ProcessPolling - VIN [12.02V]
Mar 28 14:29:32 [notice ] ALEOS_SERVICES_McuManager ProcessPolling - Temperature [31]
Mar 28 14:29:32 [notice ] ALEOS_SERVICES_McuManager ProcessPolling - Ignition [1]
Mar 28 14:29:32 [notice ] ALEOS_SERVICES_McuManager MCU configured properly [1]
Mar 28 14:29:33 [notice ] ALEOS_SYSTEM_UpdateRebootMgr BootTimeReference: Launching management [69.33] seconds since system startup]
Mar 28 14:29:33 [notice ] ALEOS_SERVICES_lpmmgr LpmMgrReadMcuStatus() MCU status 0x5d04
Mar 28 14:29:33 [notice ] ALEOS_SERVICES_McuManager McuManager start running phase
Mar 28 14:29:33 [notice ] ALEOS_SERIAL_HIF Starting HIF
Mar 28 14:29:34 [notice ] ALEOS_LAN_lanmon launching lanmon process
Mar 28 14:29:35 [notice ] ALEOS_CELL_RadioTask (qmisdkhelper) Waiting for the Radio Module to be ready
Mar 28 14:29:35 [notice ] ALEOS_CELL_RadioTask (qmisdkhelper) Radio module is ready
Mar 28 14:29:35 [debug ] ALEOS_CELL_RadioTask SDK pid is 1296
Mar 28 14:29:36 [notice ] ALEOS_CELL_RadioTask Radio module power mode is: RADIO_ONLINE
Mar 28 14:29:36 [notice ] ALEOS_ALMS_LWM2M Initializing…
Mar 28 14:29:37 [notice ] ALEOS_CELL_RadioTask ****************************************
Mar 28 14:29:37 [notice ] ALEOS_CELL_RadioTask PIN1 Status : 3
Mar 28 14:29:37 [notice ] ALEOS_CELL_RadioTask PIN1 Verify Retries Left : 3
Mar 28 14:29:37 [notice ] ALEOS_CELL_RadioTask PIN1 Unblock Retries Left : 10
Mar 28 14:29:37 [notice ] ALEOS_CELL_RadioTask IMSI changed from [NOT_SET_YET] to [311480181704640]
Mar 28 14:29:37 [notice ] ALEOS_CELL_RadioTask ICCID,EID: 89148000009793486004,UNKNOWN
Mar 28 14:29:40 [notice ] ALEOS_SECURITY_GAR Starting the Gateway Anomaly Reporting Application
Mar 28 14:29:40 [notice ] ALEOS_CELL_RadioTask cbkTestSetSignalStrengthCB - Radio interface was NO_SERVICE is now LTE
Mar 28 14:29:40 [notice ] ALEOS_CELL_RadioTask cbkTestSetSignalStrengthCB - service type was None is now LTE
Mar 28 14:29:40 [notice ] ALEOS_CELL_RadioTask Radio_state → RADIO_STATE_SIM_READY
Mar 28 14:29:40 [notice ] ALEOS_CELL_RadioTask Value “name” read from XML file using iccid: ‘Unknown’
Mar 28 14:29:40 [crit ] ALEOS_CELL_RadioTask CellParmRead: Failed to execute CellParm
Mar 28 14:29:40 [notice ] ALEOS_CELL_RadioTask Operator : Verizon
Mar 28 14:29:40 [notice ] ALEOS_CELL_RadioTask SMS storage set to: +CPMS: “SM”,0,0,“SM”,0,0,“SM”,0,0
Mar 28 14:29:40 [notice ] ALEOS_CELL_RadioTask Radio_state → RADIO_STATE_WAITING_ACTIVATION
Mar 28 14:29:40 [notice ] ALEOS_CELL_RadioTask Radio_state → RADIO_STATE_ACTIVATED
Mar 28 14:29:40 [notice ] ALEOS_CELL_RadioTask Voice Number : 18452746652
Mar 28 14:29:40 [notice ] ALEOS_CELL_RadioTask MIN:
Mar 28 14:29:40 [notice ] ALEOS_CELL_RadioTask APN read from Radio Module: ‘ne01.VZWSTATIC’
Mar 28 14:29:40 [notice ] ALEOS_CELL_RadioTask OMA DM is supported, no Auto APN lookup of APN is possible
Mar 28 14:29:40 [notice ] ALEOS_CELL_RadioTask APN Selection: Primary APN: ‘’ (Auto Entered)
Mar 28 14:29:40 [notice ] ALEOS_CELL_RadioTask Using APN from radio module: ‘ne01.VZWSTATIC’
Mar 28 14:29:40 [notice ] ALEOS_CELL_RadioTask Updating ODIS information on Radio
Mar 28 14:29:41 [notice ] ALEOS_CELL_RadioTask Customer has selected ALL BANDS
Mar 28 14:29:41 [notice ] ALEOS_CELL_RadioTask Current band setting: ALL BANDS
Mar 28 14:29:41 [notice ] ALEOS_CELL_RadioTask Radio_state → RADIO_STATE_CARRIER_SELECTION
Mar 28 14:29:41 [notice ] ALEOS_CELL_RadioTask Current COPS user setting: 0
Mar 28 14:29:41 [notice ] ALEOS_CELL_RadioTask Current COPS mode: 0
Mar 28 14:29:41 [notice ] ALEOS_CELL_RadioTask Leaving COPS mode as default: automatic
Mar 28 14:29:41 [notice ] ALEOS_CELL_RadioTask Radio_state → RADIO_STATE_NOTREADY_WAIT
Mar 28 14:29:41 [notice ] ALEOS_CELL_RadioTask New Serving Operator : 311.480
Mar 28 14:29:41 [notice ] ALEOS_CELL_RadioTask Service is available
Mar 28 14:29:41 [notice ] ALEOS_CELL_RadioTask Radio_state → RADIO_STATE_CONNECT
Mar 28 14:30:23 [notice ] ALEOS_CELL_RadioTask Current time: Thu, 28 Mar 2024 14:29:41 UTC Radio Network time used to set both system time and HW clock system time to: Thu, 28 Mar 2024 14:30:23 UTC
Mar 28 14:30:23 [notice ] ALEOS_CELL_RadioTask Seconds since boot: 77
Mar 28 14:30:23 [notice ] ALEOS_CELL_RadioTask IPPreference : IPv4
Mar 28 14:30:23 [debug ] ALEOS_CELL_RadioTask iSLQSStartStopDataSession/2975: WDS start interface verbose error: 0
Mar 28 14:30:23 [notice ] ALEOS_CELL_RadioTask cbkPacketSrvStatus - v4SessionID: 2269066512 v6SessionID: 0 state: 2 (CONNECTED) reconfig not required
Mar 28 14:30:23 [notice ] ALEOS_CELL_detectrmdetach 7WpRmHal: radio module = ALEOS_RADIO_MODULE_WP7601 is active
Mar 28 14:30:24 [notice ] ALEOS_CELL_RadioTask Connected IPv4; IPv4: 166.151.229.97 DNS1: 198.224.188.236 DNS2: 198.224.189.236
Mar 28 14:30:24 [notice ] ALEOS_CELL_RadioTask Radio_state → RADIO_STATE_DISCOVERY
Mar 28 14:30:24 [notice ] ALEOS_LINKMGMT_linkstatd wwan0 is now up
Mar 28 14:30:24 [notice ] ALEOS_LINKMGMT_linkmon Radio Connection State - Connected
Mar 28 14:30:24 [notice ] ALEOS_CELL_RadioTask Radio_state → RADIO_STATE_CONNECTED
Mar 28 14:30:24 [notice ] ALEOS_CONNECTMGMT_CMAN scheduleIPV4StatusChange: Restart firewall
Mar 28 14:30:25 [notice ] ALEOS_CELL_RadioTask Value “name” read from XML file using iccid: ‘Unknown’
Mar 28 14:30:25 [crit ] ALEOS_CELL_RadioTask CellParmRead: Failed to execute CellParm
Mar 28 14:30:25 [notice ] ALEOS_CELL_RadioTask Operator : Verizon
Mar 28 14:30:25 [err ] ALEOS_CELL_RadioTask Radio does not support FOTA
Mar 28 14:30:25 [notice ] ALEOS_CELL_RadioTask verizonFotaTimer: FOTA not supported, exiting thread
Mar 28 14:30:25 [notice ] ALEOS_SECURITY_Firewall Stopping firewall
Mar 28 14:30:25 [notice ] ALEOS_SECURITY_Firewall Applying IPv4 firewall configuration
Mar 28 14:30:25 [notice ] ALEOS_SECURITY_Firewall Successfully applied firewall configuration
Mar 28 14:30:25 [notice ] ALEOS_SECURITY_Firewall Starting firewall
Mar 28 14:30:25 [notice ] ALEOS_SECURITY_Firewall Initializing firewall tables
Mar 28 14:30:25 [notice ] ALEOS_SECURITY_Firewall DMZ State: Disabled, DMZ IP: 0.0.0.0
Mar 28 14:30:25 [notice ] ALEOS_SECURITY_Firewall Creating IPSec gateway rules for VPN 0
Mar 28 14:30:25 [notice ] ALEOS_SECURITY_Firewall Creating IPSec subnet rules for VPN 0
Mar 28 14:30:25 [notice ] ALEOS_SECURITY_Firewall Applying IPv4 firewall configuration
Mar 28 14:30:26 [notice ] ALEOS_SECURITY_Firewall Successfully applied firewall configuration
Mar 28 14:30:26 [notice ] ALEOS_SECURITY_Firewall Applying IPv6 firewall configuration
Mar 28 14:30:26 [notice ] ALEOS_SECURITY_Firewall Successfully applied firewall configuration
Mar 28 14:30:26 [notice ] ALEOS_SECURITY_firewallManager Firewall completed restart after 1249 ms
Mar 28 14:30:26 [notice ] ALEOS_CONNECTMGMT *** Network Connection successful. WAN IP [Cellular] : 166.151.229.97
Mar 28 14:30:26 [notice ] ALEOS_CONNECTMGMT *** IP UP 166.151.229.97 : wwan0
Mar 28 14:30:26 [notice ] ALEOS_CONNECTMGMT Setting WWAN MTU size to 1428
Mar 28 14:30:27 [notice ] ALEOS_CONNECTMGMT GDNS is restarting dnsmasq
Mar 28 14:30:28 [notice ] ALEOS_LAN MTU Source Auto - Set DHCP option 26 MTU: 1428
Mar 28 14:30:28 [err ] ALEOS_LAN MTU Source Auto - Ignore Opt 26 MTU size 1500
Mar 28 14:30:29 [notice ] ALEOS_LAN Starting dnsmasq
Mar 28 14:30:32 [notice ] ALEOS_VPN_SwanMgr Fips mode 0
Mar 28 14:30:33 [notice ] ALEOS_LINKMGMT_linkmon New Link Status - Network Ready - Cellular
Mar 28 14:30:39 [warning] ALEOS_ALMS_LWM2M discard older handshake message with seq: 0
Mar 28 14:30:39 [warning] ALEOS_ALMS_LWM2M discard older handshake message with seq: 0
Mar 28 14:30:39 [err ] ALEOS_ALMS_LWM2M COAP_BAD_REQUEST
Mar 28 14:30:39 [warning] ALEOS_ALMS_LWM2M Failed bootstrap, retrying in ‘10’ seconds, ‘4’ left
Mar 28 14:30:57 [err ] ALEOS_WEB_ACEmanager pam_csm(acemanager:auth): bad password
Mar 28 14:30:57 [err ] ALEOS_WEB_ACEmanager ACEmanager login failed. Connection from IP: 192.168.13.100
Mar 28 14:30:57 [err ] ALEOS_WEB_ACEmanager User [user] from IP [192.168.13.100]: not authenticated
Mar 28 14:30:58 [warning] ALEOS_ALMS_LWM2M discard older handshake message with seq: 0
Mar 28 14:30:58 [warning] ALEOS_ALMS_LWM2M discard older handshake message with seq: 0
Mar 28 14:30:58 [err ] ALEOS_ALMS_LWM2M COAP_BAD_REQUEST
Mar 28 14:30:58 [warning] ALEOS_ALMS_LWM2M Failed bootstrap, retrying in ‘20’ seconds, ‘3’ left
Mar 28 14:31:03 [notice ] ALEOS_WEB_ACEmanager User [user] login successful from IP [192.168.13.100]
Mar 28 14:31:16 [notice ] ALEOS_LAN_lanmon LAN KeepAlive Monitor: Enabled
Mar 28 14:31:22 [notice ] ALEOS_SECURITY_GAR There has been a change in the filesystem since last checksums check
Mar 28 14:31:23 [err ] ALEOS_VPN_SwanMgr establishing CHILD_SA ‘tunnel1’ failed
Mar 28 14:31:26 [warning] ALEOS_ALMS_LWM2M discard older handshake message with seq: 0
Mar 28 14:31:27 [warning] ALEOS_ALMS_LWM2M discard older handshake message with seq: 0
Mar 28 14:31:27 [err ] ALEOS_ALMS_LWM2M COAP_BAD_REQUEST
Mar 28 14:31:27 [warning] ALEOS_ALMS_LWM2M Failed bootstrap, retrying in ‘40’ seconds, ‘2’ left
Mar 28 14:32:15 [warning] ALEOS_ALMS_LWM2M discard older handshake message with seq: 0
Mar 28 14:32:15 [warning] ALEOS_ALMS_LWM2M discard older handshake message with seq: 0
Mar 28 14:32:16 [err ] ALEOS_ALMS_LWM2M COAP_BAD_REQUEST
Mar 28 14:32:16 [warning] ALEOS_ALMS_LWM2M Failed bootstrap, retrying in ‘80’ seconds, ‘1’ left
Mar 28 14:32:16 [err ] ALEOS_ALMS_LWM2M COAP_BAD_REQUEST
Mar 28 14:33:44 [warning] ALEOS_ALMS_LWM2M discard older handshake message with seq: 0
Mar 28 14:33:44 [warning] ALEOS_ALMS_LWM2M discard older handshake message with seq: 0
Mar 28 14:33:45 [err ] ALEOS_ALMS_LWM2M COAP_BAD_REQUEST
Mar 28 14:33:45 [warning] ALEOS_ALMS_LWM2M Failed bootstrap, retrying in ‘160’ seconds, ‘0’ left
Mar 28 14:35:12 [err ] ALEOS_VPN_SwanMgr establishing CHILD_SA ‘tunnel1’ failed
Mar 28 14:36:33 [warning] ALEOS_ALMS_LWM2M discard older handshake message with seq: 0
Mar 28 14:36:33 [warning] ALEOS_ALMS_LWM2M discard older handshake message with seq: 0
Mar 28 14:36:33 [err ] ALEOS_ALMS_LWM2M COAP_BAD_REQUEST
Mar 28 14:36:33 [warning] ALEOS_ALMS_LWM2M Failed bootstrap, nothing left to do
Mar 28 14:36:33 [err ] ALEOS_ALMS_LWM2M COAP_BAD_REQUEST
Mar 28 14:39:00 [err ] ALEOS_VPN_SwanMgr establishing CHILD_SA ‘tunnel1’ failed
Mar 28 14:39:21 [notice ] ALEOS_SYSTEM_SM Swapping container, new container:‘Config12.smc’…

A little update here, I am back to the original error in ESP proposals.

Is the use of ESP required to establish a VPN with the LX60 or can it be disabled?

Hi @b.gorsky,

Please provide the template file on LX40 with me.
Please refer to section ESP Security-PFS Enabled on pages 215-216 in the Software Configuration User Guide for AirLink LX40, the document I provided to see if it helps you.

Thanks,

It won’t allow me to upload the file here. It says “New users can’t upload attachments”

That said, I don’t have anything configured in the ESP Algorithms section since I don’t have a section on my firewall settings to match it to. And yes, I have checked those pages in the manual. I guess the key question here is can I disable/not use the ESP settings?

Here is the VPN section from the template file:

<menu name="VPN">
			<status title="Incoming Out of Band" value="Allowed" />
			<status title="Outgoing Management Out of Band" value="Allowed" />
			<status title="Outgoing Host Out of Band" value="Allowed" />
			<status title="VPN 1 Status" value="Error in ESP Proposal(s)" />
			<status title="VPN 2 Status" value="Not Enabled" />
			<status title="VPN 3 Status" value="Not Enabled" />
			<status title="VPN 4 Status" value="Not Enabled" />
			<status title="VPN 5 Status " value="Not Enabled" />
			<status title="Failover - Primary VPN" value="None" />
			<status title="Failover - Primary VPN Status " value="Disabled" />
			<status title="Failover - Secondary VPN" value="None" />
			<status title="Failover - Secondary VPN Status " value="Disabled" />
			<status title="Failover - Overall VPN Status " value="Disabled" />
			<status title="Failover - Number of Primary VPN Failures" value="0" />
			<status title="Failover - Number of Secondary VPN Failures" value="0" />
			<status title="Failover - Number of Switches to Primary VPN" value="0" />
			<status title="Failover - Number of Switches to Secondary VPN" value="0" />
		</menu>

Hi @b.gorsky,

Please refer to the following template files, I have tested and successfully established a IPsec VPN connection, I’m using RV50X and MP70.

RV50X_client.xml (111.6 KB)
MP70_server.xml (125.0 KB)

Additionally, please refer to the following topic to see if it is helpful: IpSec Tunnel between 2 RV50X

Thanks,

Sorry for the delayed reply. After speaking with Barracuda, we determined that the ESP Security is simply what Barracuda refers to as Phase 2. I’m all set now. Thanks.