Quantcast
Channel: All ScreenOS Firewalls (NOT SRX) posts
Viewing all articles
Browse latest Browse all 2577

Re: SSG5 no VPN connection possible

$
0
0

And here is what logs say from the client side:

19/03/19 12:17:04 ## : IKE Daemon, ver 2.2.2
19/03/19 12:17:04 ## : Copyright 2013 Shrew Soft Inc.
19/03/19 12:17:04 ## : This product linked OpenSSL 1.0.1c 10 May 2012
19/03/19 12:18:52 ii : opened 'C:\Program Files\ShrewSoft\VPN Client\debug\iked.log'
19/03/19 12:18:52 ii : opened 'C:\Program Files\ShrewSoft\VPN Client/debug/dump-ike-decrypt.cap'
19/03/19 12:18:52 ii : opened 'C:\Program Files\ShrewSoft\VPN Client/debug/dump-ike-encrypt.cap'
19/03/19 12:18:52 ii : rebuilding vnet device list ...
19/03/19 12:18:52 ii : device ROOT\VNET\0000 disabled
19/03/19 12:18:52 ii : pfkey process thread begin ...
19/03/19 12:18:52 ii : ipc server process thread begin ...
19/03/19 12:18:52 ii : network process thread begin ...
19/03/19 12:19:10 ii : ipc client process thread begin ...
19/03/19 12:19:10 <A : peer config add message
19/03/19 12:19:10 <A : proposal config message
19/03/19 12:19:10 <A : proposal config message
19/03/19 12:19:10 <A : client config message
19/03/19 12:19:10 <A : xauth username message
19/03/19 12:19:10 <A : xauth password message
19/03/19 12:19:10 <A : local id 'client.xxx.pl' message
19/03/19 12:19:10 <A : remote id 'vpngw.xxx.pl' message
19/03/19 12:19:10 <A : preshared key message
19/03/19 12:19:10 <A : remote resource message
19/03/19 12:19:10 <A : peer tunnel enable message
19/03/19 12:19:10 DB : peer added ( obj count = 1 )
19/03/19 12:19:10 ii : local address 192.168.2.63 selected for peer
19/03/19 12:19:10 DB : tunnel added ( obj count = 1 )
19/03/19 12:19:10 DB : new phase1 ( ISAKMP initiator )
19/03/19 12:19:10 DB : exchange type is aggressive
19/03/19 12:19:10 DB : 192.168.2.63:500 <-> 91.xxx.78:500
19/03/19 12:19:10 DB : 4fed8b7ecb6642e8:0000000000000000
19/03/19 12:19:10 DB : phase1 added ( obj count = 1 )
19/03/19 12:19:10 >> : security association payload
19/03/19 12:19:10 >> : - proposal #1 payload
19/03/19 12:19:10 >> : -- transform #1 payload
19/03/19 12:19:10 >> : -- transform #2 payload
19/03/19 12:19:10 >> : -- transform #3 payload
19/03/19 12:19:10 >> : -- transform #4 payload
19/03/19 12:19:10 >> : -- transform #5 payload
19/03/19 12:19:10 >> : -- transform #6 payload
19/03/19 12:19:10 >> : -- transform #7 payload
19/03/19 12:19:10 >> : -- transform #8 payload
19/03/19 12:19:10 >> : -- transform #9 payload
19/03/19 12:19:10 >> : -- transform #10 payload
19/03/19 12:19:10 >> : -- transform #11 payload
19/03/19 12:19:10 >> : -- transform #12 payload
19/03/19 12:19:10 >> : -- transform #13 payload
19/03/19 12:19:10 >> : -- transform #14 payload
19/03/19 12:19:10 >> : -- transform #15 payload
19/03/19 12:19:10 >> : -- transform #16 payload
19/03/19 12:19:10 >> : -- transform #17 payload
19/03/19 12:19:10 >> : -- transform #18 payload
19/03/19 12:19:10 >> : key exchange payload
19/03/19 12:19:10 >> : nonce payload
19/03/19 12:19:10 >> : identification payload
19/03/19 12:19:10 >> : vendor id payload
19/03/19 12:19:10 ii : local supports XAUTH
19/03/19 12:19:10 >> : vendor id payload
19/03/19 12:19:10 ii : local supports nat-t ( draft v00 )
19/03/19 12:19:10 >> : vendor id payload
19/03/19 12:19:10 ii : local supports nat-t ( draft v01 )
19/03/19 12:19:10 >> : vendor id payload
19/03/19 12:19:10 ii : local supports nat-t ( draft v02 )
19/03/19 12:19:10 >> : vendor id payload
19/03/19 12:19:10 ii : local supports nat-t ( draft v03 )
19/03/19 12:19:10 >> : vendor id payload
19/03/19 12:19:10 ii : local supports nat-t ( rfc )
19/03/19 12:19:10 >> : vendor id payload
19/03/19 12:19:10 ii : local supports FRAGMENTATION
19/03/19 12:19:10 >> : vendor id payload
19/03/19 12:19:10 >> : vendor id payload
19/03/19 12:19:10 ii : local supports DPDv1
19/03/19 12:19:10 >> : vendor id payload
19/03/19 12:19:10 ii : local is SHREW SOFT compatible
19/03/19 12:19:10 >> : vendor id payload
19/03/19 12:19:10 ii : local is NETSCREEN compatible
19/03/19 12:19:10 >> : vendor id payload
19/03/19 12:19:10 ii : local is SIDEWINDER compatible
19/03/19 12:19:10 >> : vendor id payload
19/03/19 12:19:10 ii : local is CISCO UNITY compatible
19/03/19 12:19:10 >= : cookies 4fed8b7ecb6642e8:0000000000000000
19/03/19 12:19:10 >= : message 00000000
19/03/19 12:19:10 -> : send IKE packet 192.168.2.63:500 -> 91.xxx.78:500 ( 1214 bytes )
19/03/19 12:19:10 DB : phase1 resend event scheduled ( ref count = 2 )
19/03/19 12:19:15 -> : resend 1 phase1 packet(s) [0/2] 192.168.2.63:500 -> 91.xxx.78:500
19/03/19 12:19:20 -> : resend 1 phase1 packet(s) [1/2] 192.168.2.63:500 -> 91.xxx.78:500
19/03/19 12:19:25 -> : resend 1 phase1 packet(s) [2/2] 192.168.2.63:500 -> 91.xxx.78:500
19/03/19 12:19:30 ii : resend limit exceeded for phase1 exchange
19/03/19 12:19:30 ii : phase1 removal before expire time
19/03/19 12:19:30 DB : phase1 deleted ( obj count = 0 )
19/03/19 12:19:30 DB : policy not found
19/03/19 12:19:30 DB : policy not found
19/03/19 12:19:30 DB : policy not found
19/03/19 12:19:30 DB : policy not found
19/03/19 12:19:30 DB : policy not found
19/03/19 12:19:30 DB : policy not found
19/03/19 12:19:30 DB : removing tunnel config references
19/03/19 12:19:30 DB : removing tunnel phase2 references
19/03/19 12:19:30 DB : removing tunnel phase1 references
19/03/19 12:19:30 DB : tunnel deleted ( obj count = 0 )
19/03/19 12:19:30 DB : removing all peer tunnel references
19/03/19 12:19:30 DB : peer deleted ( obj count = 0 )
19/03/19 12:19:30 ii : ipc client process thread exit ...


Viewing all articles
Browse latest Browse all 2577

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>