| Previous | Next |
| ERROR_IPSEC_IKE_SA_REAPED | ERROR_IPSEC_IKE_QM_ACQUIRE_DROP |
ERROR_IPSEC_IKE_MM_ACQUIRE_DROP
ERROR_IPSEC_IKE_MM_ACQUIRE_DROP means a request to establish a Main Mode security association waited in the IKE acquisition queue longer than permitted. It can occur when the peer is unreachable or when the keying service is overloaded.
What to check
- Check for reachability or packet-loss problems before raising timeout values.
- Look for bursts of new peers, repeated retries, or many failed negotiations that can fill the acquisition queue.
- Correlate this with CPU, memory and service health on the endpoint that reports the error.
Microsoft: Audit IPsec Main Mode
Microsoft: Use Netsh to manage network traces
Microsoft: IPsec IKE system error codes
Looking for a different code? Search another status or error code.