| Previous | Next |
| FWP_E_DUPLICATE_AUTH_METHOD | FWP_E_L2_DRIVER_NOT_READY |
FWP_E_INVALID_TUNNEL_ENDPOINT
FWP_E_INVALID_TUNNEL_ENDPOINT means the local or remote endpoint definition for an IPsec tunnel cannot be accepted by WFP.
What to verify for FWP_E_INVALID_TUNNEL_ENDPOINT
- Check that local and remote endpoints use valid, compatible address families.
- Verify that the endpoint values match the tunnel policy mode and are not unspecified, malformed, or reversed.
- Check routing and address availability separately after the policy itself validates.
Microsoft: capture IPsec events with netsh wfp
Microsoft: WFP filtering layer identifiers
Diagnostic discriminator: Validate local and remote tunnel endpoints before testing route reachability. Wrong address family, unspecified values or reversed endpoints are policy-definition errors that occur independently of whether packets can traverse the route.
Looking for a different code? Search another status or error code.
