What does Windows error code 13812 (ERROR_IPSEC_IKE_QUEUE_DROP_NO_MM) mean?

 
Previous Next
ERROR_IPSEC_IKE_QUEUE_DROP_MM ERROR_IPSEC_IKE_DROP_NO_RESPONSE

ERROR_IPSEC_IKE_QUEUE_DROP_NO_MM

ERROR_IPSEC_IKE_QUEUE_DROP_NO_MM means Windows could not obtain a usable Main Mode association before the queued request expired. The traffic-triggered request cannot proceed until peer authentication and Main Mode negotiation complete.

Look for the Main Mode failure that preceded the queued traffic request. Fixing that earlier authentication, policy, or reachability problem is more reliable than increasing retries for traffic that still has no authenticated SA.

What to check

  • Troubleshoot Main Mode first: authentication method, machine certificate or Kerberos, and reachability to the peer.
  • Check whether the peer is responding to IKE at all.
  • Review whether connection-security rules require IPsec for traffic that cannot currently negotiate it.

Microsoft: Get-NetIPsecMainModeSA

Microsoft: Connection security rules

Microsoft: IPsec IKE system error codes


Looking for a different code? Search another status or error code.