У меня такая же проблема...
Есть:
Cisco VPN Client 4.0.1 -> DSL 500T (NAT) -> Internet > Cisco 3845 (VPN Server)
Когда я запускаю Connect на Cisco VPN Client вижу в логах следующее:
1 12:48:13.436 01/11/06 Sev=Info/4 CM/0x63100002
Begin connection process
2 12:48:13.506 01/11/06 Sev=Info/4 CVPND/0xE3400001
Microsoft IPSec Policy Agent service stopped successfully
3 12:48:13.506 01/11/06 Sev=Info/4 CM/0x63100004
Establish secure connection using Ethernet
4 12:48:13.516 01/11/06 Sev=Info/4 CM/0x63100024
Attempt connection with server "193.94.0.73"
5 12:48:14.518 01/11/06 Sev=Info/6 IKE/0x6300003B
Attempting to establish a connection with 193.94.0.73.
6 12:48:14.618 01/11/06 Sev=Info/4 IKE/0x63000013
SENDING >>> ISAKMP OAK AG (SA, KE, NON, ID, VID(Xauth), VID(dpd), VID(Nat-T), VID(Frag), VID(Unity)) to 193.94.0.73
7 12:48:14.618 01/11/06 Sev=Info/4 IPSEC/0x63700008
IPSec driver successfully started
8 12:48:14.618 01/11/06 Sev=Info/4 IPSEC/0x63700014
Deleted all keys
9 12:48:14.758 01/11/06 Sev=Info/5 IKE/0x6300002F
Received ISAKMP packet: peer = 193.94.0.73
10 12:48:14.758 01/11/06 Sev=Info/4 IKE/0x63000014
RECEIVING <<< ISAKMP OAK AG (SA, VID(Unity), VID(dpd), VID(?), VID(Xauth), VID(Nat-T), KE, ID, NON, HASH, NAT-D, NAT-D) from 193.94.0.73
11 12:48:14.758 01/11/06 Sev=Info/5 IKE/0x63000001
Peer is a Cisco-Unity compliant peer
12 12:48:14.758 01/11/06 Sev=Info/5 IKE/0x63000001
Peer supports DPD
13 12:48:14.758 01/11/06 Sev=Info/5 IKE/0x63000001
Peer supports DWR Code and DWR Text
14 12:48:14.758 01/11/06 Sev=Info/5 IKE/0x63000001
Peer supports XAUTH
15 12:48:14.758 01/11/06 Sev=Info/5 IKE/0x63000001
Peer supports NAT-T
16 12:48:14.808 01/11/06 Sev=Info/6 IKE/0x63000001
IOS Vendor ID Contruction successful
17 12:48:14.808 01/11/06 Sev=Info/4 IKE/0x63000013
SENDING >>> ISAKMP OAK AG *(HASH, NOTIFY:STATUS_INITIAL_CONTACT, NAT-D, NAT-D, VID(?), VID(Unity)) to 193.94.0.73
18 12:48:14.808 01/11/06 Sev=Info/6 IKE/0x63000054
Sent a keepalive on the IPSec SA
19 12:48:14.808 01/11/06 Sev=Info/4 IKE/0x63000082
IKE Port in use - Local Port = 0x1194, Remote Port = 0x1194
20 12:48:14.808 01/11/06 Sev=Info/5 IKE/0x63000071
Automatic NAT Detection Status:
Remote end is NOT behind a NAT device
This end IS behind a NAT device
21 12:48:19.475 01/11/06 Sev=Info/4 CM/0x63100006
Abort connection attempt before Phase 1 SA up
22 12:48:19.475 01/11/06 Sev=Info/4 IKE/0x63000001
IKE received signal to terminate VPN connection
23 12:48:19.475 01/11/06 Sev=Info/4 IKE/0x63000017
Marking IKE SA for deletion (I_Cookie=695354D36260F48E R_Cookie=01E273A3EDA9472F) reason = DEL_REASON_RESET_SADB
24 12:48:19.475 01/11/06 Sev=Info/4 IKE/0x63000013
SENDING >>> ISAKMP OAK INFO *(HASH, DWR) to 193.94.0.73
что делать ????
VPN канал не поднимается из -за NAT
|