| Previous | Next |
| ERROR_IPSEC_IKE_INVALID_HEADER | ERROR_IPSEC_IKE_INVALID_SIGNATURE |
ERROR_IPSEC_IKE_NO_POLICY
ERROR_IPSEC_IKE_NO_POLICY means Windows could not find policy that authorizes the IKE negotiation. The local computer may have no matching connection-security rule, the rule may be disabled, or its endpoint/profile conditions may not match the traffic.
Before creating a new rule, verify the effective policy and endpoint scope on both sides. A disabled, overridden, or nonmatching rule can produce the same symptom as a configuration that was never deployed.
What to check
- Review enabled Connection Security Rules and the active firewall profile.
- Confirm the local and remote endpoint definitions match the actual peer addresses.
- Verify GPO/MDM policy has arrived and has not been overridden by a conflicting local rule.
Microsoft: Connection security rules
Looking for a different code? Search another status or error code.