[Vpn-help] Disconnecting after succuess. Possible phase2 issue.

Brian Woods brianjwd at yahoo.com
Wed Mar 18 22:41:10 CDT 2009


Having issues with keeping a Connection. It seems like it works for a second, and it looks like somewhere around phase 2. Things go awry. Any suggestions?

Trace Log:

09/03/18 23:21:30 ## : IKE Daemon, ver 2.1.4
09/03/18 23:21:30 ## : Copyright 2008 Shrew Soft Inc.
09/03/18 23:21:30 ## : This product linked OpenSSL 0.9.8h 28 May 2008
09/03/18 23:21:30 ii : opened 'C:\Program Files\ShrewSoft\VPN Client\debug\iked.log'
09/03/18 23:21:30 ii : rebuilding vnet device list ...
09/03/18 23:21:30 ii : device ROOT\VNET\0000 disabled
09/03/18 23:21:30 ii : device ROOT\VNET\0001 disabled
09/03/18 23:21:30 ii : device ROOT\VNET\0002 disabled
09/03/18 23:21:30 ii : network process thread begin ...
09/03/18 23:21:30 ii : pfkey process thread begin ...
09/03/18 23:21:30 ii : ipc server process thread begin ...
09/03/18 23:22:08 ii : ipc client process thread begin ...
09/03/18 23:22:08 <A : peer config add message
09/03/18 23:22:08 DB : peer added ( obj count = 1 )
09/03/18 23:22:08 ii : local address 192.168.2.11:500 selected for peer
09/03/18 23:22:08 DB : tunnel added ( obj count = 1 )
09/03/18 23:22:08 <A : proposal config message
09/03/18 23:22:08 <A : proposal config message
09/03/18 23:22:08 <A : client config message
09/03/18 23:22:08 <A : xauth username message
09/03/18 23:22:08 <A : xauth password message
09/03/18 23:22:08 <A : local id 'vpntunnel' message
09/03/18 23:22:08 <A : preshared key message
09/03/18 23:22:08 <A : peer tunnel enable message
09/03/18 23:22:08 DB : new phase1 ( ISAKMP initiator )
09/03/18 23:22:08 DB : exchange type is aggressive
09/03/18 23:22:08 DB : 192.168.2.11:500 <-> 198.175.52.243:500
09/03/18 23:22:08 DB : 7e259def4c4ac309:0000000000000000
09/03/18 23:22:08 DB : phase1 added ( obj count = 1 )
09/03/18 23:22:08 >> : security association payload
09/03/18 23:22:08 >> : - proposal #1 payload 
09/03/18 23:22:08 >> : -- transform #1 payload 
09/03/18 23:22:08 >> : key exchange payload
09/03/18 23:22:08 >> : nonce payload
09/03/18 23:22:08 >> : identification payload
09/03/18 23:22:08 >> : vendor id payload
09/03/18 23:22:08 ii : local supports XAUTH
09/03/18 23:22:08 >> : vendor id payload
09/03/18 23:22:08 ii : local supports nat-t ( draft v00 )
09/03/18 23:22:08 >> : vendor id payload
09/03/18 23:22:08 ii : local supports nat-t ( draft v01 )
09/03/18 23:22:08 >> : vendor id payload
09/03/18 23:22:08 ii : local supports nat-t ( draft v02 )
09/03/18 23:22:08 >> : vendor id payload
09/03/18 23:22:08 ii : local supports nat-t ( draft v03 )
09/03/18 23:22:08 >> : vendor id payload
09/03/18 23:22:08 ii : local supports nat-t ( rfc )
09/03/18 23:22:08 >> : vendor id payload
09/03/18 23:22:08 ii : local supports FRAGMENTATION
09/03/18 23:22:08 >> : vendor id payload
09/03/18 23:22:08 ii : local supports DPDv1
09/03/18 23:22:08 >> : vendor id payload
09/03/18 23:22:08 ii : local is SHREW SOFT compatible
09/03/18 23:22:08 >> : vendor id payload
09/03/18 23:22:08 ii : local is NETSCREEN compatible
09/03/18 23:22:08 >> : vendor id payload
09/03/18 23:22:08 ii : local is SIDEWINDER compatible
09/03/18 23:22:08 >> : vendor id payload
09/03/18 23:22:08 ii : local is CISCO UNITY compatible
09/03/18 23:22:08 >= : cookies 7e259def4c4ac309:0000000000000000
09/03/18 23:22:08 >= : message 00000000
09/03/18 23:22:08 -> : send IKE packet 192.168.2.11:500 -> 198.175.52.243:500 ( 525 bytes )
09/03/18 23:22:08 DB : phase1 resend event scheduled ( ref count = 2 )
09/03/18 23:22:09 <- : recv IKE packet 198.175.52.243:500 -> 192.168.2.11:500 ( 388 bytes )
09/03/18 23:22:09 DB : phase1 found
09/03/18 23:22:09 ii : processing phase1 packet ( 388 bytes )
09/03/18 23:22:09 =< : cookies 7e259def4c4ac309:3b52f869ceef5e93
09/03/18 23:22:09 =< : message 00000000
09/03/18 23:22:09 << : security association payload
09/03/18 23:22:09 << : - propsal #1 payload 
09/03/18 23:22:09 << : -- transform #1 payload 
09/03/18 23:22:09 ii : matched isakmp proposal #1 transform #1
09/03/18 23:22:09 ii : - transform = ike
09/03/18 23:22:09 ii : - cipher type = 3des
09/03/18 23:22:09 ii : - key length = default
09/03/18 23:22:09 ii : - hash type = md5
09/03/18 23:22:09 ii : - dh group = modp-1024
09/03/18 23:22:09 ii : - auth type = xauth-initiator-psk
09/03/18 23:22:09 ii : - life seconds = 86400
09/03/18 23:22:09 ii : - life kbytes = 0
09/03/18 23:22:09 << : key exchange payload
09/03/18 23:22:09 << : nonce payload
09/03/18 23:22:09 << : identification payload
09/03/18 23:22:09 ii : phase1 id match ( natt prevents ip match )
09/03/18 23:22:09 ii : received = ipv4-host 198.175.52.243
09/03/18 23:22:09 << : hash payload
09/03/18 23:22:09 << : vendor id payload
09/03/18 23:22:09 ii : peer is CISCO UNITY compatible
09/03/18 23:22:09 << : vendor id payload
09/03/18 23:22:09 ii : peer supports XAUTH
09/03/18 23:22:09 << : vendor id payload
09/03/18 23:22:09 ii : peer supports DPDv1
09/03/18 23:22:09 << : vendor id payload
09/03/18 23:22:09 ii : unknown vendor id ( 20 bytes )
09/03/18 23:22:09 0x : 4048b7d5 6ebce885 25e7de7f 00d6c2d3 c0000000
09/03/18 23:22:09 << : vendor id payload
09/03/18 23:22:09 ii : unknown vendor id ( 16 bytes )
09/03/18 23:22:09 0x : ce955f74 ceee5e93 bd153810 a19dec2c
09/03/18 23:22:09 << : vendor id payload
09/03/18 23:22:09 ii : unknown vendor id ( 16 bytes )
09/03/18 23:22:09 0x : 1f07f70e aa6514d3 b0fa9654 2a500407
09/03/18 23:22:09 ii : nat-t is unsupported by remote peer
09/03/18 23:22:09 == : DH shared secret ( 128 bytes )
09/03/18 23:22:09 == : SETKEYID ( 16 bytes )
09/03/18 23:22:09 == : SETKEYID_d ( 16 bytes )
09/03/18 23:22:09 == : SETKEYID_a ( 16 bytes )
09/03/18 23:22:09 == : SETKEYID_e ( 16 bytes )
09/03/18 23:22:09 == : cipher key ( 32 bytes )
09/03/18 23:22:09 == : cipher iv ( 8 bytes )
09/03/18 23:22:09 == : phase1 hash_i ( computed ) ( 16 bytes )
09/03/18 23:22:09 >> : hash payload
09/03/18 23:22:09 >= : cookies 7e259def4c4ac309:3b52f869ceef5e93
09/03/18 23:22:09 >= : message 00000000
09/03/18 23:22:09 >= : encrypt iv ( 8 bytes )
09/03/18 23:22:09 == : encrypt packet ( 48 bytes )
09/03/18 23:22:09 == : stored iv ( 8 bytes )
09/03/18 23:22:09 DB : phase1 resend event canceled ( ref count = 1 )
09/03/18 23:22:09 -> : send IKE packet 192.168.2.11:500 -> 198.175.52.243:500 ( 80 bytes )
09/03/18 23:22:09 == : phase1 hash_r ( computed ) ( 16 bytes )
09/03/18 23:22:09 == : phase1 hash_r ( received ) ( 16 bytes )
09/03/18 23:22:09 ii : phase1 sa established
09/03/18 23:22:09 ii : 198.175.52.243:500 <-> 192.168.2.11:500
09/03/18 23:22:09 ii : 7e259def4c4ac309:3b52f869ceef5e93
09/03/18 23:22:09 ii : sending peer INITIAL-CONTACT notification
09/03/18 23:22:09 ii : - 192.168.2.11:500 -> 198.175.52.243:500
09/03/18 23:22:09 ii : - isakmp spi = 7e259def4c4ac309:3b52f869ceef5e93
09/03/18 23:22:09 ii : - data size 0
09/03/18 23:22:09 >> : hash payload
09/03/18 23:22:09 >> : notification payload
09/03/18 23:22:09 == : new informational hash ( 16 bytes )
09/03/18 23:22:09 == : new informational iv ( 8 bytes )
09/03/18 23:22:09 >= : cookies 7e259def4c4ac309:3b52f869ceef5e93
09/03/18 23:22:09 >= : message 3e4c09ab
09/03/18 23:22:09 >= : encrypt iv ( 8 bytes )
09/03/18 23:22:09 == : encrypt packet ( 76 bytes )
09/03/18 23:22:09 == : stored iv ( 8 bytes )
09/03/18 23:22:09 -> : send IKE packet 192.168.2.11:500 -> 198.175.52.243:500 ( 104 bytes )
09/03/18 23:22:09 DB : phase2 not found
09/03/18 23:22:09 <- : recv IKE packet 198.175.52.243:500 -> 192.168.2.11:500 ( 100 bytes )
09/03/18 23:22:09 DB : phase1 found
09/03/18 23:22:09 ii : processing config packet ( 100 bytes )
09/03/18 23:22:09 DB : config not found
09/03/18 23:22:09 DB : config added ( obj count = 1 )
09/03/18 23:22:09 == : new config iv ( 8 bytes )
09/03/18 23:22:09 =< : cookies 7e259def4c4ac309:3b52f869ceef5e93
09/03/18 23:22:09 =< : message 23dad632
09/03/18 23:22:09 =< : decrypt iv ( 8 bytes )
09/03/18 23:22:09 == : decrypt packet ( 100 bytes )
09/03/18 23:22:09 <= : stored iv ( 8 bytes )
09/03/18 23:22:09 << : hash payload
09/03/18 23:22:09 << : attribute payload
09/03/18 23:22:09 == : configure hash_i ( computed ) ( 16 bytes )
09/03/18 23:22:09 == : configure hash_c ( computed ) ( 16 bytes )
09/03/18 23:22:09 ii : configure hash verified
09/03/18 23:22:09 ii : received xauth request - Enter Username and Password.
09/03/18 23:22:09 ii : added standard xauth username attribute
09/03/18 23:22:09 ii : added standard xauth password attribute
09/03/18 23:22:09 ii : sending xauth response for woodsb
09/03/18 23:22:09 >> : hash payload
09/03/18 23:22:09 >> : attribute payload
09/03/18 23:22:09 == : new configure hash ( 16 bytes )
09/03/18 23:22:09 >= : cookies 7e259def4c4ac309:3b52f869ceef5e93
09/03/18 23:22:09 >= : message 23dad632
09/03/18 23:22:09 >= : encrypt iv ( 8 bytes )
09/03/18 23:22:09 == : encrypt packet ( 84 bytes )
09/03/18 23:22:09 == : stored iv ( 8 bytes )
09/03/18 23:22:09 -> : send IKE packet 192.168.2.11:500 -> 198.175.52.243:500 ( 112 bytes )
09/03/18 23:22:09 DB : config resend event scheduled ( ref count = 2 )
09/03/18 23:22:11 <- : recv IKE packet 198.175.52.243:500 -> 192.168.2.11:500 ( 60 bytes )
09/03/18 23:22:11 DB : phase1 found
09/03/18 23:22:11 ii : processing config packet ( 60 bytes )
09/03/18 23:22:11 DB : config found
09/03/18 23:22:11 == : new config iv ( 8 bytes )
09/03/18 23:22:11 =< : cookies 7e259def4c4ac309:3b52f869ceef5e93
09/03/18 23:22:11 =< : message c852c81c
09/03/18 23:22:11 =< : decrypt iv ( 8 bytes )
09/03/18 23:22:11 == : decrypt packet ( 60 bytes )
09/03/18 23:22:11 <= : stored iv ( 8 bytes )
09/03/18 23:22:11 << : hash payload
09/03/18 23:22:11 << : attribute payload
09/03/18 23:22:11 == : configure hash_i ( computed ) ( 16 bytes )
09/03/18 23:22:11 == : configure hash_c ( computed ) ( 16 bytes )
09/03/18 23:22:11 ii : configure hash verified
09/03/18 23:22:11 ii : received xauth result - 
09/03/18 23:22:11 ii : user woodsb authentication succeeded
09/03/18 23:22:11 ii : sending xauth acknowledge
09/03/18 23:22:11 >> : hash payload
09/03/18 23:22:11 >> : attribute payload
09/03/18 23:22:11 == : new configure hash ( 16 bytes )
09/03/18 23:22:11 >= : cookies 7e259def4c4ac309:3b52f869ceef5e93
09/03/18 23:22:11 >= : message c852c81c
09/03/18 23:22:11 >= : encrypt iv ( 8 bytes )
09/03/18 23:22:11 == : encrypt packet ( 56 bytes )
09/03/18 23:22:11 == : stored iv ( 8 bytes )
09/03/18 23:22:11 DB : config resend event canceled ( ref count = 1 )
09/03/18 23:22:11 -> : send IKE packet 192.168.2.11:500 -> 198.175.52.243:500 ( 88 bytes )
09/03/18 23:22:11 DB : config resend event scheduled ( ref count = 2 )
09/03/18 23:22:11 ii : building config attribute list
09/03/18 23:22:11 ii : - IP4 Address
09/03/18 23:22:11 ii : - Address Expiry
09/03/18 23:22:11 ii : - IP4 Netamask
09/03/18 23:22:11 ii : - IP4 DNS Server
09/03/18 23:22:11 ii : - IP4 WINS Server
09/03/18 23:22:11 ii : - DNS Suffix
09/03/18 23:22:11 ii : - Split DNS Domain
09/03/18 23:22:11 ii : - IP4 Split Network Include
09/03/18 23:22:11 ii : - IP4 Split Network Exclude
09/03/18 23:22:11 ii : - Login Banner
09/03/18 23:22:11 ii : - Save Password
09/03/18 23:22:11 == : new config iv ( 8 bytes )
09/03/18 23:22:11 ii : sending config pull request
09/03/18 23:22:11 >> : hash payload
09/03/18 23:22:11 >> : attribute payload
09/03/18 23:22:11 == : new configure hash ( 16 bytes )
09/03/18 23:22:11 >= : cookies 7e259def4c4ac309:3b52f869ceef5e93
09/03/18 23:22:11 >= : message 792b7482
09/03/18 23:22:11 >= : encrypt iv ( 8 bytes )
09/03/18 23:22:11 == : encrypt packet ( 100 bytes )
09/03/18 23:22:11 == : stored iv ( 8 bytes )
09/03/18 23:22:11 DB : config resend event canceled ( ref count = 1 )
09/03/18 23:22:11 -> : send IKE packet 192.168.2.11:500 -> 198.175.52.243:500 ( 128 bytes )
09/03/18 23:22:11 DB : config resend event scheduled ( ref count = 2 )
09/03/18 23:22:12 <- : recv IKE packet 198.175.52.243:500 -> 192.168.2.11:500 ( 284 bytes )
09/03/18 23:22:12 DB : phase1 found
09/03/18 23:22:12 ii : processing config packet ( 284 bytes )
09/03/18 23:22:12 DB : config found
09/03/18 23:22:12 =< : cookies 7e259def4c4ac309:3b52f869ceef5e93
09/03/18 23:22:12 =< : message 792b7482
09/03/18 23:22:12 =< : decrypt iv ( 8 bytes )
09/03/18 23:22:12 == : decrypt packet ( 284 bytes )
09/03/18 23:22:12 <= : trimmed packet padding ( 3 bytes )
09/03/18 23:22:12 <= : stored iv ( 8 bytes )
09/03/18 23:22:12 << : hash payload
09/03/18 23:22:12 << : attribute payload
09/03/18 23:22:12 == : configure hash_i ( computed ) ( 16 bytes )
09/03/18 23:22:12 == : configure hash_c ( computed ) ( 16 bytes )
09/03/18 23:22:12 ii : configure hash verified
09/03/18 23:22:12 ii : received config pull response
09/03/18 23:22:12 ii : - IP4 Address = 10.67.34.40
09/03/18 23:22:12 ii : - IP4 Netmask = 255.255.255.0
09/03/18 23:22:12 ii : - IP4 DNS Server = 10.67.23.212
09/03/18 23:22:12 ii : - IP4 DNS Server = 10.67.23.214
09/03/18 23:22:12 ii : - Login Banner = This sys ...
09/03/18 23:22:12 ii : - Save Password = 0
09/03/18 23:22:12 ii : - DNS Suffix = phh.ads
09/03/18 23:22:12 DB : config resend event canceled ( ref count = 1 )
09/03/18 23:22:12 ii : VNET adapter MTU is 1500
09/03/18 23:22:12 ii : enabled adapter ROOT\VNET\0000
09/03/18 23:22:12 ii : creating NONE INBOUND policy ANY:198.175.52.243:* -> ANY:192.168.2.11:*
09/03/18 23:22:12 DB : policy added ( obj count = 1 )
09/03/18 23:22:12 K> : send pfkey X_SPDADD UNSPEC message
09/03/18 23:22:12 ii : creating NONE OUTBOUND policy ANY:192.168.2.11:* -> ANY:198.175.52.243:*
09/03/18 23:22:12 K< : recv pfkey X_SPDADD UNSPEC message
09/03/18 23:22:12 DB : policy found
09/03/18 23:22:12 ii : created NONE policy route for 198.175.52.243/32
09/03/18 23:22:12 DB : policy added ( obj count = 2 )
09/03/18 23:22:12 K> : send pfkey X_SPDADD UNSPEC message
09/03/18 23:22:12 ii : creating IPSEC INBOUND policy ANY:0.0.0.0/0:* -> ANY:10.67.34.40:*
09/03/18 23:22:12 DB : policy added ( obj count = 3 )
09/03/18 23:22:12 K> : send pfkey X_SPDADD UNSPEC message
09/03/18 23:22:12 ii : creating IPSEC OUTBOUND policy ANY:10.67.34.40:* -> ANY:0.0.0.0/0:*
09/03/18 23:22:12 ii : created IPSEC policy route for 0.0.0.0
09/03/18 23:22:12 DB : policy added ( obj count = 4 )
09/03/18 23:22:12 K> : send pfkey X_SPDADD UNSPEC message
09/03/18 23:22:12 ii : split DNS bypassed ( no split domains defined )
09/03/18 23:22:12 K< : recv pfkey X_SPDADD UNSPEC message
09/03/18 23:22:12 DB : policy found
09/03/18 23:22:12 ii : calling init phase2 for initial policy
09/03/18 23:22:12 DB : policy found
09/03/18 23:22:12 DB : policy not found
09/03/18 23:22:12 !! : unable to locate inbound policy for init phase2
09/03/18 23:22:12 K< : recv pfkey X_SPDADD UNSPEC message
09/03/18 23:22:12 DB : policy found
09/03/18 23:22:13 K< : recv pfkey X_SPDADD UNSPEC message
09/03/18 23:22:13 DB : policy found
09/03/18 23:22:16 K< : recv pfkey ACQUIRE UNSPEC message
09/03/18 23:22:16 DB : policy found
09/03/18 23:22:16 DB : policy found
09/03/18 23:22:16 DB : tunnel found
09/03/18 23:22:16 DB : new phase2 ( IPSEC initiator )
09/03/18 23:22:16 DB : phase2 added ( obj count = 1 )
09/03/18 23:22:16 K> : send pfkey GETSPI ESP message
09/03/18 23:22:16 K< : recv pfkey GETSPI ESP message
09/03/18 23:22:16 DB : phase2 found
09/03/18 23:22:16 ii : updated spi for 1 ipsec-esp proposal
09/03/18 23:22:16 DB : phase1 found
09/03/18 23:22:16 >> : hash payload
09/03/18 23:22:16 >> : security association payload
09/03/18 23:22:16 >> : - proposal #1 payload 
09/03/18 23:22:16 >> : -- transform #1 payload 
09/03/18 23:22:16 >> : nonce payload
09/03/18 23:22:16 >> : identification payload
09/03/18 23:22:16 >> : identification payload
09/03/18 23:22:16 == : phase2 hash_i ( input ) ( 108 bytes )
09/03/18 23:22:16 == : phase2 hash_i ( computed ) ( 16 bytes )
09/03/18 23:22:16 == : new phase2 iv ( 8 bytes )
09/03/18 23:22:16 >= : cookies 7e259def4c4ac309:3b52f869ceef5e93
09/03/18 23:22:16 >= : message 98adba66
09/03/18 23:22:16 >= : encrypt iv ( 8 bytes )
09/03/18 23:22:16 == : encrypt packet ( 152 bytes )
09/03/18 23:22:16 == : stored iv ( 8 bytes )
09/03/18 23:22:16 -> : send IKE packet 192.168.2.11:500 -> 198.175.52.243:500 ( 184 bytes )
09/03/18 23:22:16 DB : phase2 resend event scheduled ( ref count = 2 )
09/03/18 23:22:16 <- : recv IKE packet 198.175.52.243:500 -> 192.168.2.11:500 ( 76 bytes )
09/03/18 23:22:16 DB : phase1 found
09/03/18 23:22:16 ii : processing informational packet ( 76 bytes )
09/03/18 23:22:16 == : new informational iv ( 8 bytes )
09/03/18 23:22:16 =< : cookies 7e259def4c4ac309:3b52f869ceef5e93
09/03/18 23:22:16 =< : message 7af39938
09/03/18 23:22:16 =< : decrypt iv ( 8 bytes )
09/03/18 23:22:16 == : decrypt packet ( 76 bytes )
09/03/18 23:22:16 <= : stored iv ( 8 bytes )
09/03/18 23:22:16 << : hash payload
09/03/18 23:22:16 << : delete payload
09/03/18 23:22:16 == : informational hash_i ( computed ) ( 16 bytes )
09/03/18 23:22:16 == : informational hash_c ( received ) ( 16 bytes )
09/03/18 23:22:16 ii : informational hash verified
09/03/18 23:22:16 ii : received peer DELETE message
09/03/18 23:22:16 ii : - 198.175.52.243:500 -> 192.168.2.11:500
09/03/18 23:22:16 ii : - isakmp spi = 7e259def4c4ac309:3b52f869ceef5e93
09/03/18 23:22:16 DB : phase1 found
09/03/18 23:22:16 ii : cleanup, marked phase1 7e259def4c4ac309:3b52f869ceef5e93 for removal
09/03/18 23:22:16 DB : phase1 soft event canceled ( ref count = 4 )
09/03/18 23:22:16 DB : phase1 hard event canceled ( ref count = 3 )
09/03/18 23:22:16 DB : phase1 dead event canceled ( ref count = 2 )
09/03/18 23:22:16 DB : config deleted ( obj count = 0 )
09/03/18 23:22:16 ii : phase1 removal before expire time
09/03/18 23:22:16 DB : phase1 not found
09/03/18 23:22:16 DB : phase1 deleted ( obj count = 0 )
09/03/18 23:22:16 DB : policy found
09/03/18 23:22:16 ii : removing IPSEC INBOUND policy ANY:0.0.0.0/0:* -> ANY:10.67.34.40:*
09/03/18 23:22:16 K> : send pfkey X_SPDDELETE2 UNSPEC message
09/03/18 23:22:16 DB : policy found
09/03/18 23:22:16 ii : removing IPSEC OUTBOUND policy ANY:10.67.34.40:* -> ANY:0.0.0.0/0:*
09/03/18 23:22:16 K> : send pfkey X_SPDDELETE2 UNSPEC message
09/03/18 23:22:16 K< : recv pfkey X_SPDDELETE2 UNSPEC message
09/03/18 23:22:16 ii : removed IPSEC policy route for ANY:0.0.0.0/0:*
09/03/18 23:22:16 DB : policy found
09/03/18 23:22:16 ii : removing NONE INBOUND policy ANY:198.175.52.243:* -> ANY:192.168.2.11:*
09/03/18 23:22:16 K> : send pfkey X_SPDDELETE2 UNSPEC message
09/03/18 23:22:16 DB : policy found
09/03/18 23:22:16 ii : removing NONE OUTBOUND policy ANY:192.168.2.11:* -> ANY:198.175.52.243:*
09/03/18 23:22:16 K> : send pfkey X_SPDDELETE2 UNSPEC message
09/03/18 23:22:16 ii : removed NONE policy route for ANY:198.175.52.243:*
09/03/18 23:22:16 DB : policy found
09/03/18 23:22:16 DB : policy deleted ( obj count = 3 )
09/03/18 23:22:16 ii : disabled adapter ROOT\VNET\0000
09/03/18 23:22:16 DB : tunnel dpd event canceled ( ref count = 3 )
09/03/18 23:22:16 DB : tunnel stats event canceled ( ref count = 2 )
09/03/18 23:22:16 DB : removing tunnel config references
09/03/18 23:22:16 DB : removing tunnel phase2 references
09/03/18 23:22:16 DB : phase2 resend event canceled ( ref count = 1 )
09/03/18 23:22:16 ii : phase2 removal before expire time
09/03/18 23:22:16 DB : phase2 deleted ( obj count = 0 )
09/03/18 23:22:16 DB : removing tunnel phase1 references
09/03/18 23:22:16 DB : tunnel deleted ( obj count = 0 )
09/03/18 23:22:16 K< : recv pfkey X_SPDDELETE2 UNSPEC message
09/03/18 23:22:16 DB : policy found
09/03/18 23:22:16 DB : policy deleted ( obj count = 2 )
09/03/18 23:22:16 K< : recv pfkey X_SPDDELETE2 UNSPEC message
09/03/18 23:22:16 DB : policy found
09/03/18 23:22:16 DB : policy deleted ( obj count = 1 )
09/03/18 23:22:16 K< : recv pfkey X_SPDDELETE2 UNSPEC message
09/03/18 23:22:16 DB : policy found
09/03/18 23:22:16 DB : policy deleted ( obj count = 0 )
09/03/18 23:22:16 DB : removing all peer tunnel refrences
09/03/18 23:22:16 DB : peer deleted ( obj count = 0 )
09/03/18 23:22:16 ii : ipc client process thread exit ...

Configuration:

n:version:3
n:network-ike-port:500
n:network-mtu-size:1380
n:client-addr-auto:1
n:network-natt-port:4500
n:network-natt-rate:15
n:network-frag-size:540
n:network-dpd-enable:1
n:client-banner-enable:1
n:network-notify-enable:1
n:client-dns-used:1
n:client-dns-auto:1
n:client-dns-suffix-auto:1
n:client-splitdns-used:1
n:client-splitdns-auto:1
n:client-wins-used:1
n:client-wins-auto:1
n:phase1-dhgroup:2
n:phase1-life-secs:86400
n:phase1-life-kbytes:0
n:vendor-chkpt-enable:0
n:phase2-life-secs:3600
n:phase2-life-kbytes:0
n:policy-nailed:0
n:policy-list-auto:1
s:network-host:198.175.52.243
s:client-auto-mode:pull
s:client-iface:virtual
s:network-natt-mode:enable
s:network-frag-mode:enable
s:auth-method:mutual-psk-xauth
s:ident-client-type:keyid
s:ident-server-type:address
s:ident-client-data:vpntunne l
b:auth-mutual-psk:cGhodnBudHVubmVsMjAwMQ==
s:phase1-exchange:aggressive
s:phase1-cipher:auto
s:phase1-hash:auto
s:phase2-transform:auto
s:phase2-hmac:auto
s:ipcomp-transform:disabled
n:phase2-pfsgroup:-1


      



More information about the vpn-help mailing list