While trying to configure the IPSec VPN tunnel with another firewall, the following error is returned:
None of the proposed crypto suites was acceptable
The state of a tunnel appears as Connecting.
The error logs report a similar entry:
IPsec: Failed to establish connection with remote endpoint x.x.x.x: None of the proposed crypto suites was acceptable
This article provides information on how to resolve such an issue.
This error indicates that the crypto suites from the remote host did not match the acceptable suites in Kerio Control.
Make sure to configure the same ciphers on both sides: Kerio Control and the remote firewall.
- In Kerio Control Webadmin navigate to Interfaces > double-click on VPN tunnel to open the properties > click Change > verify the Default or configure Custom ciphers.
For more information, please refer to Establishing IPSec VPN tunnel with another firewall.
- Make sure the ciphers are matching on the remote site as well. Please refer to your vendor's docs for detailed information.