Re: Progress IPsec Phase 2 Failure
Sorry for resurrecting this old thread but it looks like I'm having similar symptoms between Fortigate 100D and Amazon VPC.
In Log & Report->VPN Events every now and then I see negotiate failure messages "progress IPsec phase 2", Direction=inbound, Role=responder, RemotePort=500. It looks like the tunnel is always up and I have no problems pinging hosts from both ends, but since this new setup is not rolled out to users yet, I can't really say if it will be stable.
What I also noticed was that I could RDP into servers in Amazon without any issues. However, when I try to RDP from Amazon back to premises, it works, but every 2-3-4th time, meaning that in first several attempts I get a standard RDP connection error. During RDP failures, I can ping hosts fine.