[vpn-help] no hash in message payload

Ben Cuthbert bencuthbert at ymail.com
Thu Apr 12 12:04:26 CDT 2012


All

Our vpn works with ipsecuritas one of our people works on linux had he has shrew soft vpn. His configuration it attached, and when he trys to connect
he gets this error. Can't seem to think what it is

1.1.1.1 is the server and 10.10.10.10 is the client

2012-04-12 17:09:39: [rv120w][IKE] INFO:  Remote configuration for identifier "remote.com" found
2012-04-12 17:09:39: [rv120w][IKE] INFO:  Received request for new phase 1 negotiation: 1.1.1.1.1[500]<=>10.10.10.10500]
2012-04-12 17:09:39: [rv120w][IKE] INFO:  Beginning Aggressive mode.
2012-04-12 17:09:39: [rv120w][IKE] INFO:  Received Vendor ID: draft-ietf-ipsra-isakmp-xauth-06.txt
2012-04-12 17:09:39: [rv120w][IKE] INFO:  Received unknown Vendor ID
2012-04-12 17:09:39: [rv120w][IKE] INFO:  Received unknown Vendor ID
2012-04-12 17:09:39: [rv120w][IKE] INFO:  Received Vendor ID: draft-ietf-ipsec-nat-t-ike-02

2012-04-12 17:09:39: [rv120w][IKE] INFO:  Received unknown Vendor ID
2012-04-12 17:09:39: [rv120w][IKE] INFO:  Received Vendor ID: RFC 3947
2012-04-12 17:09:39: [rv120w][IKE] INFO:  Received Vendor ID: DPD
2012-04-12 17:09:39: [rv120w][IKE] INFO:  Received unknown Vendor ID
2012-04-12 17:09:39: [rv120w][IKE] INFO:  Received unknown Vendor ID
2012-04-12 17:09:39: [rv120w][IKE] INFO:  Received unknown Vendor ID
2012-04-12 17:09:39: [rv120w][IKE] INFO:  Received Vendor ID: CISCO-UNITY
2012-04-12 17:09:39: [rv120w][IKE] INFO:  For 10.10.10.10[500], Selected NAT-T version: RFC 39472012-04-12 17:09:40: [rv120w][IKE] ERROR:  Ignore information because the message has no hash payload.
2012-04-12 17:09:49: [rv120w][IKE] ERROR:  Ignore information because the message has no hash payload.



Configuration


n:version:2
n:network-ike-port:500
n:network-mtu-size:1380
n:client-addr-auto:1
n:network-natt-port:4500
n:network-natt-rate:15
n:network-frag-size:540
n:network-dpd-enable:1
n:network-notify-enable:1
n:client-banner-enable:1
n:client-dns-used:1
n:client-dns-auto:1
b:auth-mutual-psk:YzNsM3J0M2NoMDE=
n:phase1-dhgroup:2
n:phase1-keylen:0
n:phase1-life-secs:28800
n:phase1-life-kbytes:0
n:vendor-chkpt-enable:0
n:phase2-keylen:0
n:phase2-pfsgroup:2
n:phase2-life-secs:3600
n:phase2-life-kbytes:0
n:policy-nailed:0
n:policy-list-auto:1
s:client-ip-addr:144.10.2.0
s:client-ip-mask:255.255.255.0
s:network-host:1.1.1.1.1
s:client-auto-mode:dhcp
s:client-iface:virtual
s:network-natt-mode:enable
s:network-frag-mode:disable
s:auth-method:mutual-psk-xauth
s:ident-client-type:keyid
s:ident-client-data:remote.com
s:ident-server-type:keyid
s:ident-server-data:local.com
s:phase1-exchange:aggressive
s:phase1-cipher:3des
s:phase1-hash:sha1
s:phase2-transform:3des
s:phase2-hmac:sha1
s:ipcomp-transform:disabled




More information about the vpn-help mailing list