[AF] Standard IPSEC establishment failed: The payload length field is greater than the actual length of the payload. This may be a residual packet or a decryption failure. Please check whether the algorithm and pre-shared key are configured correctly.
Problem Description
Standard IPSEC establishment failed: The payload length field is greater than the actual length of the payload. This may be a residual packet or a decryption failure. Please check whether the algorithm and pre-shared key are configured correctly.
Warning Info

410825be979a5ef293.png (40.59 KB)
solution
Go to [Network] – [IPSec VPN] – [Third-party connection] – [Phase 1] – Device list settings – [Advanced] – and change the pre-shared key to be the same as the peer key.

276065be97a0d01087.png (11.73 KB)
Suggestions and Conclusion
When a company's equipment is connected to other manufacturers using the third-party standard IPsec, if the connection fails, check the log error prompts and open the debug log to see the specific error prompts. If the error parameters are inconsistent, let me modify them to be consistent with the other end or negotiate with the other end to modify them. If the configuration parameters are confirmed to be correct but the connection still fails, it is recommended to call 400-630-6430 to negotiate with our engineers to handle it.
Original Link
https://support.sangfor.com.cn/cases/list?product_id=13&type=1&category_id=483&isOpen=true