Client VPN Error, "connection attempt failed because security policy for the connection was not found"

Hi All-

We are setting up the client VPN on an end-user device, and we are getting a strange error when we try to connect. “Connection attempt failed because security policy for the connection was not found.”

VPN is working on other devices, no issues.

Any ideas?

Make sure only PAP is the only encryption method checked.

If it continues, check the Application event log for VPN events. Usually it will have a specific 3-digit error code that can be used for specific troubleshooting: Troubleshooting Client VPN - Cisco Meraki Documentation

Edit: a word

We have run into this on occasion. Usually deleting the connection and recreating it fixes the problem. First, I would have the user try to connect using a hotspot or another Internet connection. This will determine if the problem is with their current location such as their home Internet.

If the hotspot works, they may be behind a nat-t connection. See this: https://docs.microsoft.com/en-us/troubleshoot/windows-server/networking/configure-l2tp-ipsec-server-behind-nat-t-device

Also, check with the end user on their internet connection, if they have connected before ask if their ISP or router has changed. I’ve run into the problem lately that one of our ISPs give out a router that the firewall will block the ports needed for a meraki VPN to connect.

Doesn’t the NAT-T issue pertain to the device the client is connecting to (in this case an MX)? Does it also apply to the workstation being NAT’d?

We have had to apply the above fix to home users. All of our MXs have public IPs so I can’t say if it applies to the device the client is connecting to.