I'm trying to get P2S and S2S to work at the same time. They are working fine individually but when I try to make it work together it falls short. Windows 2012 R2 server and a USG110 Zyxel firewall.
The errors im getting in the logs are "The cookie pair is: x / y", "Send[INVALID MAJOR VERSION]", "Major version numbers are different".
Is what I'm trying to do possible with one Virtual network gateway, or do I need 2 for different purposes?
Anyone have any ideas?
When using a route-based system (Point-to-Site), you need to use IKEv2 and not IKEv1. IKEv1 Doesn't support point-to-site, only site-to-site.