we have a classic VPN setup for one of our customers. The tunnel is located in europe-west1. It was created on January and all went smooth until last week.
Since last week, we have been seeing a progressive degradation of the VPN connection. Looking at the logs, the cause seems a proposal mismatch in CHILD SA (phase 2), but it comes with no information about which parameter doesn't match.
According to the logs, the parameters check reports the following:
Cloud VPN has 1 proposals. Peer has 1 proposals.
Cloud VPN proposal #1 vs Peer proposal #1 :
Match parameters:
ENCRYPTION_ALGORITHM : ESP:AES_GCM_16_256
EXTENDED_SEQUENCE_NUMBERS : ESP:NO_EXT_SEQ
PFS : ESP:MODP_1024
Mismatch parameters:
<some empty lines>
Do you have any idea on how to figure out the problem? Thanks!