Cannot connect VPN IKEv2 to usg 100

Franz94370
Franz94370 Posts: 6  Freshman Member
First Comment First Anniversary

I have configurate a IKEv2 VPN connection but each time i cannot connect and i saw this error message in the log

1

2024-10-17 07:55:12

warn

ADP

Rule_id:1 from WAN to Any, [type:UDP-Decoder(74)] oversize-len Action:Drop Packet [count=3]

V5.39(ABUH.0) / 2024-08-22 06:21:11

Can you help me ?

Best regards

All Replies

  • Zyxel_Melen
    Zyxel_Melen Posts: 2,253  Zyxel Employee
    Zyxel Certified Network Engineer Level 1 - Switch Zyxel Certified Network Administrator - Switch Zyxel Certified Network Administrator - Nebula Zyxel Certified Sales Associate

    Hi @Franz94370,

    This is more likely due to the other side of the IKEv2 VPN sending over-size-length packets. What is the device that connects to USG FLEX 100? If it is site-to-site VPN, are the VPN configurations on both the routers/firewalls the same? (MSS)

    In addition, if this device is trusted, you can set the ADP allow list to bypass the traffic. The rules below screenshot an example, you might need to adjust to fit your network.

    Hope it helps.

Security Highlight