> Source: [sk13836](https://support.checkpoint.com/results/sk/sk13836)

# sk13836 - Check Point-to-Cisco VPN tunnel fails to establish

| Property | Value |
|----------|-------|
| Solution ID | sk13836 |
| Date Created | 2002-08-22 |
| Last Modified | 2019-05-21 |
| Technical Level | General |

## Symptoms

- * VPN tunnel fails to establish.
* Key exchange between Check Point gateway to Cisco router starts, but shortly after fails with the error: "IKE:Information Exchanged Received Delete IPSEC-SA from peer".

## Cause

The Cisco router does not have an Access List defined, allowing ESP traffic.

## Solution

The issue lies on the Cisco gateway's side. You need to create an Access List on the Cisco router, allowing ESP to it and from it.   
For more information please contact Cisco.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
