[vpn-help] Unable to connect after upgrade

Daniel Alvarez Marfil dmarfil at carlsonsw.com
Wed Aug 28 08:35:52 CDT 2013


Hello All,
I hope somebody can help me.

OS: windows7
Previous Shrew Soft version: 2.1.5
Upgraded to: 2.2.2-Release

I've been working for a year with 2.1.5 version but I have upgraded to
latest version... From there, Shrew does not work and I am unable to
connect to VPN.

I tried to go back to 2.1.5 but I cannot connect whatever version I use and
I had lot of troubles to go back to 2.1.5, finally I have installed 2.2.0.

config loaded for site '....'
attached to key daemon ...
peer configured
iskamp proposal configured
esp proposal configured
client configured
local id configured
remote id configured
server cert configured
client cert configured
client key configured
bringing up tunnel ...
negotiation timout occurred
tunnel disabled
detached from key daemon
attached to key daemon ...
peer configured
iskamp proposal configured
esp proposal configured
client configured
local id configured
remote id configured
server cert configured
client cert configured
server cert file requires password
client key file requires password
detached from key daemon
attached to key daemon ...
peer configured
iskamp proposal configured
esp proposal configured
client configured
local id configured
remote id configured
server cert configured
client cert configured
client key configured
bringing up tunnel ...
negotiation timout occurred
tunnel disabled
detached from key daemon

I attach log files.

Thanks for any support.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.shrew.net/pipermail/vpn-help/attachments/20130828/9fefe8eb/attachment.html>
-------------- next part --------------
13/08/28 15:12:49 ## : IKE Daemon, ver 2.2.0
13/08/28 15:12:49 ## : Copyright 2013 Shrew Soft Inc.
13/08/28 15:12:49 ## : This product linked OpenSSL 1.0.1c 10 May 2012
13/08/28 15:12:49 ii : opened 'C:\Program Files\ShrewSoft\VPN Client\debug\iked.log'
13/08/28 15:12:49 ii : opened 'C:\Program Files\ShrewSoft\VPN Client/debug/dump-ike-decrypt.cap'
13/08/28 15:12:49 ii : opened 'C:\Program Files\ShrewSoft\VPN Client/debug/dump-ike-encrypt.cap'
13/08/28 15:12:49 ii : rebuilding vnet device list ...
13/08/28 15:12:49 ii : device ROOT\VNET\0000 disabled
13/08/28 15:12:49 ii : network process thread begin ...
13/08/28 15:12:49 ii : pfkey process thread begin ...
13/08/28 15:12:49 ii : ipc server process thread begin ...
13/08/28 15:12:52 !! : unable to connect to pfkey interface
13/08/28 15:12:56 ii : ipc client process thread begin ...
13/08/28 15:12:56 <A : peer config add message
13/08/28 15:12:56 <A : proposal config message
13/08/28 15:12:56 <A : proposal config message
13/08/28 15:12:56 <A : client config message
13/08/28 15:12:56 <A : remote certificate data message
13/08/28 15:12:56 ii : remote certificate read complete ( 940 bytes )
13/08/28 15:12:56 <A : local certificate data message
13/08/28 15:12:56 ii : local certificate read complete ( 887 bytes )
13/08/28 15:12:56 <A : local key data message
13/08/28 15:12:56 !! : libeay : .\crypto\asn1\tasn_dec.c:1319
13/08/28 15:12:56 !! : error:0D0680A8:asn1 encoding routines:ASN1_CHECK_TLEN:wrong tag
13/08/28 15:12:56 !! : libeay : .\crypto\asn1\tasn_dec.c:381
13/08/28 15:12:56 !! : error:0D07803A:asn1 encoding routines:ASN1_ITEM_EX_D2I:nested asn1 error
13/08/28 15:12:56 !! : local key read failed, requesting password
13/08/28 15:13:01 <A : file password
13/08/28 15:13:01 <A : local key data message
13/08/28 15:13:01 ii : local key read complete ( 607 bytes )
13/08/28 15:13:01 <A : remote resource message
13/08/28 15:13:01 <A : peer tunnel enable message
13/08/28 15:13:01 DB : peer ref increment ( ref count = 1, obj count = 0 )
13/08/28 15:13:01 DB : peer added ( obj count = 1 )
13/08/28 15:13:01 ii : local address 176.37.199.19 selected for peer
13/08/28 15:13:01 DB : peer ref increment ( ref count = 2, obj count = 1 )
13/08/28 15:13:01 DB : tunnel ref increment ( ref count = 1, obj count = 0 )
13/08/28 15:13:01 DB : tunnel added ( obj count = 1 )
13/08/28 15:13:01 DB : tunnel ref increment ( ref count = 2, obj count = 1 )
13/08/28 15:13:01 ii : obtained x509 cert subject ( 108 bytes )
13/08/28 15:13:01 0x : 306a310b 30090603 55040613 02455331 0f300d06 03550408 13064d61 64726964
13/08/28 15:13:01 0x : 310f300d 06035504 0713064d 61647269 64311930 17060355 040a1310 4361726c
13/08/28 15:13:01 0x : 736f6e20 536f6674 77617265 311e301c 06035504 03131544 616e6965 6c20416c
13/08/28 15:13:01 0x : 76617265 7a204d61 7266696c
13/08/28 15:13:01 DB : new phase1 ( ISAKMP initiator )
13/08/28 15:13:01 DB : exchange type is identity protect
13/08/28 15:13:01 DB : 176.37.199.19:500 <-> XXX.XXX.XXX.XXX:500
13/08/28 15:13:01 DB : 0cce60c72b7758af:0000000000000000
13/08/28 15:13:01 DB : phase1 ref increment ( ref count = 1, obj count = 0 )
13/08/28 15:13:01 DB : phase1 added ( obj count = 1 )
13/08/28 15:13:01 >> : security association payload
13/08/28 15:13:01 >> : - proposal #1 payload 
13/08/28 15:13:01 >> : -- transform #1 payload 
13/08/28 15:13:01 >> : -- transform #2 payload 
13/08/28 15:13:01 >> : -- transform #3 payload 
13/08/28 15:13:01 >> : -- transform #4 payload 
13/08/28 15:13:01 >> : vendor id payload
13/08/28 15:13:01 ii : local is SHREW SOFT compatible
13/08/28 15:13:01 >> : vendor id payload
13/08/28 15:13:01 ii : local is NETSCREEN compatible
13/08/28 15:13:01 >> : vendor id payload
13/08/28 15:13:01 ii : local is SIDEWINDER compatible
13/08/28 15:13:01 >> : vendor id payload
13/08/28 15:13:01 ii : local is CISCO UNITY compatible
13/08/28 15:13:01 >= : cookies 0cce60c72b7758af:0000000000000000
13/08/28 15:13:01 >= : message 00000000
13/08/28 15:13:01 -> : send IKE packet 176.37.199.19:500 -> XXX.XXX.XXX.XXX:500 ( 304 bytes )
13/08/28 15:13:01 0x : 45000130 5f090000 4011fdd5 b025c713 92731332 01f401f4 011c176e 0cce60c7
13/08/28 15:13:01 0x : 2b7758af 00000000 00000000 01100200 00000000 00000114 0d0000a4 00000001
13/08/28 15:13:01 0x : 00000001 00000098 01010004 03000024 01010000 80010005 80020001 8004000e
13/08/28 15:13:01 0x : 80030003 800b0001 000c0004 00015180 03000024 02010000 80010005 80020001
13/08/28 15:13:01 0x : 80040005 80030003 800b0001 000c0004 00015180 03000024 03010000 80010005
13/08/28 15:13:01 0x : 80020001 80040002 80030003 800b0001 000c0004 00015180 00000024 04010000
13/08/28 15:13:01 0x : 80010005 80020001 80040001 80030003 800b0001 000c0004 00015180 0d000014
13/08/28 15:13:01 0x : f14b94b7 bff1fef0 2773b8c4 9feded26 0d000018 166f932d 55eb64d8 e4df4fd3
13/08/28 15:13:01 0x : 7e2313f0 d0fd8451 0d000014 8404adf9 cda05760 b2ca292e 4bff537b 00000014
13/08/28 15:13:01 0x : 12f5f28c 457168a9 702d9fe2 74cc0100
13/08/28 15:13:01 DB : phase1 resend event scheduled ( ref count = 2 )
13/08/28 15:13:01 DB : phase1 ref decrement ( ref count = 1, obj count = 1 )
13/08/28 15:13:06 -> : resend 1 phase1 packet(s) [0/2] 176.37.199.19:500 -> XXX.XXX.XXX.XXX:500
13/08/28 15:13:11 -> : resend 1 phase1 packet(s) [1/2] 176.37.199.19:500 -> XXX.XXX.XXX.XXX:500
13/08/28 15:13:16 -> : resend 1 phase1 packet(s) [2/2] 176.37.199.19:500 -> XXX.XXX.XXX.XXX:500
13/08/28 15:13:21 ii : resend limit exceeded for phase1 exchange
13/08/28 15:13:21 ii : phase1 removal before expire time
13/08/28 15:13:21 DB : phase1 deleted ( obj count = 0 )
13/08/28 15:13:21 DB : tunnel ref decrement ( ref count = 1, obj count = 1 )
13/08/28 15:13:21 DB : policy not found
13/08/28 15:13:21 DB : policy not found
13/08/28 15:13:21 DB : policy not found
13/08/28 15:13:21 DB : policy not found
13/08/28 15:13:21 DB : policy not found
13/08/28 15:13:21 DB : policy not found
13/08/28 15:13:21 DB : removing tunnel config references
13/08/28 15:13:21 DB : removing tunnel phase2 references
13/08/28 15:13:21 DB : removing tunnel phase1 references
13/08/28 15:13:21 DB : tunnel deleted ( obj count = 0 )
13/08/28 15:13:21 DB : peer ref decrement ( ref count = 1, obj count = 1 )
13/08/28 15:13:21 DB : removing all peer tunnel references
13/08/28 15:13:21 DB : peer deleted ( obj count = 0 )
13/08/28 15:13:21 ii : ipc client process thread exit ...
-------------- next part --------------
A non-text attachment was scrubbed...
Name: ipsec.log
Type: application/octet-stream
Size: 1106 bytes
Desc: not available
URL: <https://lists.shrew.net/pipermail/vpn-help/attachments/20130828/9fefe8eb/attachment.obj>


More information about the vpn-help mailing list