Description |
This article describes the case when sending traffic over an IPsec tunnel, debug flow displays the following error:
id=65308 trace_id=15 func=resolve_ip_tuple_fast line=5930 msg="Find an existing session, id-00090049, reply direction" |
Scope | Any FortiOS on VM. |
Solution |
This log 'id=65308 trace_id=15 func=nipsec_set_ipsec_sa_enc line=965 msg="IPSec encrypt SA (p1/p2/spi={To-Tunnel-A/To-Tunnel-A/0x333ab007}) offloading-check failed, reason_code=2."' means that one is using VM FortiGate which does not have NPU, hence NPU offloading is not supported. So, the traffic is being offloaded by the CPU. |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.