我ASA和飞塔防火墙 ikev2 L2L配置,但是第一阶段配置status显示delete
crypto isakmp disconnect-notify
crypto ikev2 policy 10
encryption 3des
integrity sha md5
group 5
prf sha md5
lifetime seconds 86400
crypto ipsec ikev2 ipsec-proposal trans
protocol esp encryption 3des
protocol esp integrity md5
tunnel-group 112.95.173.85 type ipsec-l2l
tunnel-group 112.95.173.85 ipsec-attributes
isakmp keepalive threshold 10 retry 3
ikev2 remote-authentication pre-shared-key *****
ikev2 local-authentication pre-shared-key *****
crypto map vpn 10 match address vpn
crypto map vpn 10 set peer 112.95.173.85
crypto map vpn 10 set ikev2 ipsec-proposal trans
crypto map vpn interface outside
access-list vpn extended permit ip 10.1.2.0 255.255.255.0 10.40.0.0 255.255.255.0
crypto ikev2 enable outside
object network remote_vpn
subnet 10.40.0.0 255.255.255.0
nat (inside,outside) source static inside inside destination static remote_vpn remote_vpn no-proxy-arp route-lookup