[Vpn-help] Win7 x64 Can't connect to Cisco VPN

Boccia, Brian Brian at motorize.com
Wed Nov 18 12:34:17 CST 2009


I'm getting the "negotiation timeout occurred" error when I try to
connect to a Cisco VPN.  I'm using 2.1.5-rc-4 in Windows 7 Ultimate
64-bit.  Below is the IKE logs (I masked the IP addresses and clipped
some of the IKE packet data after copying out of the log).  I've tried
several configuration changes suggested in similar threads with no
success.  One thing I did notice was that the virtual adapter never
seems to get enabled.  I don't see any errors anywhere about that
though.  I also noticed a few messages in the event logs relating to
iked.exe, but none seem to correspond to the connection attempts.

 

09/11/18 13:18:19 ## : IKE Daemon, ver 2.1.0

09/11/18 13:18:19 ## : Copyright 2008 Shrew Soft Inc.

09/11/18 13:18:19 ## : This product linked OpenSSL 0.9.8h 28 May 2008

09/11/18 13:18:19 ii : opened 'D:\Program Files\ShrewSoft\VPN
Client\debug\iked.log'

09/11/18 13:18:19 ii : opened 'D:\Program Files\ShrewSoft\VPN
Client/debug/dump-ike-decrypt.cap'

09/11/18 13:18:19 ii : opened 'D:\Program Files\ShrewSoft\VPN
Client/debug/dump-ike-encrypt.cap'

09/11/18 13:18:19 ii : rebuilding vnet device list ...

09/11/18 13:18:19 ii : device ROOT\VNET\0000 disabled

09/11/18 13:18:19 ii : network process thread begin ...

09/11/18 13:18:19 ii : pfkey process thread begin ...

09/11/18 13:18:19 ii : ipc server process thread begin ...

09/11/18 13:18:25 ii : ipc client process thread begin ...

09/11/18 13:18:25 <A : peer config add message

09/11/18 13:18:25 DB : peer ref increment ( ref count = 1, obj count = 0
)

09/11/18 13:18:25 DB : peer added ( obj count = 1 )

09/11/18 13:18:25 ii : local address 10.10.1.41 selected for peer

09/11/18 13:18:25 DB : peer ref increment ( ref count = 2, obj count = 1
)

09/11/18 13:18:25 DB : tunnel ref increment ( ref count = 1, obj count =
0 )

09/11/18 13:18:25 DB : tunnel added ( obj count = 1 )

09/11/18 13:18:25 <A : proposal config message

09/11/18 13:18:25 <A : proposal config message

09/11/18 13:18:25 <A : client config message

09/11/18 13:18:25 <A : xauth username message

09/11/18 13:18:25 <A : xauth password message

09/11/18 13:18:25 <A : local id '*************' message

09/11/18 13:18:25 <A : preshared key message

09/11/18 13:18:25 <A : peer tunnel enable message

09/11/18 13:18:25 DB : tunnel ref increment ( ref count = 2, obj count =
1 )

09/11/18 13:18:25 DB : new phase1 ( ISAKMP initiator )

09/11/18 13:18:25 DB : exchange type is aggressive

09/11/18 13:18:25 DB : 10.10.1.41:500 <-> **.***.***.**:500

09/11/18 13:18:25 DB : 3b88c25001374c6d:0000000000000000

09/11/18 13:18:25 DB : phase1 ref increment ( ref count = 1, obj count =
0 )

09/11/18 13:18:25 DB : phase1 added ( obj count = 1 )

09/11/18 13:18:25 >> : security association payload

09/11/18 13:18:25 >> : - proposal #1 payload 

09/11/18 13:18:25 >> : -- transform #1 payload 

09/11/18 13:18:25 >> : -- transform #2 payload 

09/11/18 13:18:25 >> : -- transform #3 payload 

09/11/18 13:18:25 >> : -- transform #4 payload 

09/11/18 13:18:25 >> : -- transform #5 payload 

09/11/18 13:18:25 >> : -- transform #6 payload 

09/11/18 13:18:25 >> : -- transform #7 payload 

09/11/18 13:18:25 >> : -- transform #8 payload 

09/11/18 13:18:25 >> : -- transform #9 payload 

09/11/18 13:18:25 >> : -- transform #10 payload 

09/11/18 13:18:25 >> : -- transform #11 payload 

09/11/18 13:18:25 >> : -- transform #12 payload 

09/11/18 13:18:25 >> : -- transform #13 payload 

09/11/18 13:18:25 >> : -- transform #14 payload 

09/11/18 13:18:25 >> : -- transform #15 payload 

09/11/18 13:18:25 >> : -- transform #16 payload 

09/11/18 13:18:25 >> : -- transform #17 payload 

09/11/18 13:18:25 >> : -- transform #18 payload 

09/11/18 13:18:25 >> : key exchange payload

09/11/18 13:18:25 >> : nonce payload

09/11/18 13:18:25 >> : identification payload

09/11/18 13:18:25 >> : vendor id payload

09/11/18 13:18:25 ii : local supports XAUTH

09/11/18 13:18:25 >> : vendor id payload

09/11/18 13:18:25 ii : local is SHREW SOFT compatible

09/11/18 13:18:25 >> : vendor id payload

09/11/18 13:18:25 ii : local is NETSCREEN compatible

09/11/18 13:18:25 >> : vendor id payload

09/11/18 13:18:25 ii : local is SIDEWINDER compatible

09/11/18 13:18:25 >> : vendor id payload

09/11/18 13:18:25 ii : local is CISCO UNITY compatible

09/11/18 13:18:25 >= : cookies 3b88c25001374c6d:0000000000000000

09/11/18 13:18:25 >= : message 00000000

09/11/18 13:18:25 -> : send IKE packet 10.10.1.41:500 ->
**.***.***.**:500 ( 1045 bytes )

09/11/18 13:18:25 0x : 45000415 e54b0000 4011c47d 0a0a0129 43c07e1c
01f401f4 04013811 3b88c250

<-- snipped a few lines --->

09/11/18 13:18:25 DB : phase1 resend event scheduled ( ref count = 2 )

09/11/18 13:18:25 DB : phase1 ref decrement ( ref count = 1, obj count =
1 )

09/11/18 13:18:25 DB : tunnel ref increment ( ref count = 3, obj count =
1 )

09/11/18 13:18:30 -> : resend 1 phase1 packet(s) 10.10.1.41:500 ->
**.***.***.**:500

09/11/18 13:18:35 -> : resend 1 phase1 packet(s) 10.10.1.41:500 ->
**.***.***.**:500

09/11/18 13:18:40 -> : resend 1 phase1 packet(s) 10.10.1.41:500 ->
**.***.***.**:500

09/11/18 13:18:45 ii : resend limit exceeded for phase1 exchange

09/11/18 13:18:45 ii : phase1 removal before expire time

09/11/18 13:18:45 DB : phase1 deleted ( obj count = 0 )

09/11/18 13:18:45 DB : tunnel ref decrement ( ref count = 2, obj count =
1 )

09/11/18 13:18:45 DB : tunnel stats event canceled ( ref count = 1 )

09/11/18 13:18:45 DB : removing tunnel config references

09/11/18 13:18:45 DB : removing tunnel phase2 references

09/11/18 13:18:45 DB : removing tunnel phase1 references

09/11/18 13:18:45 DB : tunnel deleted ( obj count = 0 )

09/11/18 13:18:46 DB : peer ref decrement ( ref count = 1, obj count = 1
)

09/11/18 13:18:46 DB : removing all peer tunnel refrences

09/11/18 13:18:46 DB : peer deleted ( obj count = 0 )

09/11/18 13:18:46 ii : ipc client process thread exit ...

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.shrew.net/pipermail/vpn-help/attachments/20091118/26575f8d/attachment-0001.html>


More information about the vpn-help mailing list