Стоит модем Zyxel 600RU в режиме моста, следом роутер DI 824-VUP, на роутере поднимается РРРоЕ, также задача роутера поднимать 2 VPN канала, а по факту он поднимает только один VPN.
Все настройки правильные, перепроверены раз на 50 уже...
DI 824-VUP:
LAN - 192.168.98.0
255.255.255.0
WAN - 95.188.64.149
принимающая сторона:
LAN - 10.1.2.18
255.255.255.255
WAN - 93.157.240.53
Вот что в логах при попытке поднятия второго VPN:
Friday October 09, 2009 11:07:33 Send IKE M1(INIT) : 95.188.64.149 --> 93.157.240.53
Friday October 09, 2009 11:07:33 Receive IKE M2(RESP) : 93.157.240.53 --> 95.188.64.149
Friday October 09, 2009 11:07:33 Try to match with ENC:3DES AUTH:PSK HASH:MD5 Group:Group1
Friday October 09, 2009 11:07:33 Send IKE M3(KEYINIT) : 95.188.64.149 --> 93.157.240.53
Friday October 09, 2009 11:07:38 IKED re-TX : KEYINIT to 93.157.240.53
Friday October 09, 2009 11:07:38 Receive IKE M4(KEYRESP) : 93.157.240.53 --> 95.188.64.149
Friday October 09, 2009 11:07:38 Send IKE M5(IDINIT) : 95.188.64.149 --> 93.157.240.53
Friday October 09, 2009 11:07:39 Receive IKE M6(IDRESP) : 93.157.240.53 --> 95.188.64.149
Friday October 09, 2009 11:07:39 IKE Phase1 (ISAKMP SA) established : 93.157.240.53 <-> 95.188.64.149
Friday October 09, 2009 11:07:39 Send IKE Q1(QINIT) : 192.168.98.0 --> 10.1.2.18
Friday October 09, 2009 11:07:39 Receive IKE Q2(QRESP) : [10.1.2.18|93.157.240.53]-->[95.188.64.149|192.168.98.0]
Friday October 09, 2009 11:07:44 IKED re-TX : QINIT to 93.157.240.53
Friday October 09, 2009 11:07:44 Receive IKE Q2(QRESP) : [10.1.2.18|93.157.240.53]-->[95.188.64.149|192.168.98.0]
Friday October 09, 2009 11:07:49 IKED re-TX : QINIT to 93.157.240.53
Friday October 09, 2009 11:07:49 Receive IKE Q2(QRESP) : [10.1.2.18|93.157.240.53]-->[95.188.64.149|192.168.98.0]
Friday October 09, 2009 11:07:57 Receive IKE Q2(QRESP) : [10.1.2.18|93.157.240.53]-->[95.188.64.149|192.168.98.0]
Friday October 09, 2009 11:07:59 IKED re-TX : QINIT to 93.157.240.53
Friday October 09, 2009 11:07:59 Receive IKE INFO : 93.157.240.53 --> 95.188.64.149
Friday October 09, 2009 11:07:59 Receive IKE INFO : 93.157.240.53 --> 95.188.64.149
Friday October 09, 2009 11:07:59 Receive IKE (INFO) : delete 93.157.240.53 -> 95.188.64.149 phase 1
Friday October 09, 2009 11:07:58 Receive IKE (INFO) : delete 93.157.240.53 -> 95.188.64.149 phase 1
Friday October 09, 2009 11:07:58 Send IKE (INFO) : delete [192.168.98.0|95.188.64.149]-->[93.157.240.53|10.1.2.18] phase 2
Friday October 09, 2009 11:07:58 IKE phase2 (IPSec SA) remove : 192.168.98.0 <-> 10.1.2.18
Friday October 09, 2009 11:07:58 inbound SPI = 0x28000010, outbound SPI = 0x0
Friday October 09, 2009 11:07:58 Send IKE (INFO) : delete 95.188.64.149 -> 93.157.240.53 phase 1
Friday October 09, 2009 11:07:58 IKE phase1 (ISAKMP SA) remove : 95.188.64.149 <-> 93.157.240.53
Friday October 09, 2009 11:08:49 IPSec tunnel keep alive : peer IP 192.168.2.13
Friday October 09, 2009 11:08:49 [192.168.98.0|95.188.64.149]-->[95.188.64.136|192.168.2.0]
Friday October 09, 2009 11:09:34 IPSec tunnel keep alive : peer IP 192.168.2.13
Friday October 09, 2009 11:09:34 [192.168.98.0|95.188.64.149]-->[95.188.64.136|192.168.2.0]
Friday October 09, 2009 11:10:41 Blocked access attempt from 95.188.174.107:4542 to TCP port 23
Friday October 09, 2009 11:10:44 Blocked access attempt from 95.188.174.107:4542 to TCP port 23
Friday October 09, 2009 11:10:44 IPSec tunnel keep alive : peer IP 192.168.2.13
Friday October 09, 2009 11:10:44 [192.168.98.0|95.188.64.149]-->[95.188.64.136|192.168.2.0]
Friday October 09, 2009 11:12:22 IPSec tunnel keep alive : peer IP 192.168.2.13
Friday October 09, 2009 11:12:22 [192.168.98.0|95.188.64.149]-->[95.188.64.136|192.168.2.0]
Friday October 09, 2009 11:16:48 IPSec tunnel keep alive : peer IP 192.168.2.13
Friday October 09, 2009 11:16:48 [192.168.98.0|95.188.64.149]-->[95.188.64.136|192.168.2.0]
Подскажите что-нибудь.
|