Всем привет!
Срочно нужна помощь!
Есть две сети, создана VPN в соответсвии с FAQ, в VPN статусе появляется IKE Established но адреса из разных сетей не пингуются.
Вот лог
Wednesday August 03, 2005 01:44:51 Restarted by 192.168.1.98
Wednesday August 03, 2005 01:45:14 Send IKE M1(INIT) : 80.80.112.221 --> 80.80.112.229
Wednesday August 03, 2005 01:45:15 Receive IKE M2(RESP) : 80.80.112.229 --> 80.80.112.221
Wednesday August 03, 2005 01:45:15 Try to match with ENC:3DES AUTH:XAUTH_INIT_PSK HASH:MD5 Group:Group2
Wednesday August 03, 2005 01:45:15 Send IKE M3(KEYINIT) : 80.80.112.221 --> 80.80.112.229
Wednesday August 03, 2005 01:45:16 Receive IKE M4(KEYRESP) : 80.80.112.229 --> 80.80.112.221
Wednesday August 03, 2005 01:45:16 Send IKE M5(IDINIT) : 80.80.112.221 --> 80.80.112.229
Wednesday August 03, 2005 01:45:16 Receive IKE M6(IDRESP) : 80.80.112.229 --> 80.80.112.221
Wednesday August 03, 2005 01:45:16 IKE Phase1 (ISAKMP SA) established : 80.80.112.229 <-> 80.80.112.221
Wednesday August 03, 2005 01:45:16 Receive XAUTH (REQUEST) : 80.80.112.229 -> 80.80.112.221 XAUTH type generic(0)
Wednesday August 03, 2005 01:45:16 Send XAUTH (REPLY) : 80.80.112.221 -> 80.80.112.229 username(andy)
Wednesday August 03, 2005 01:45:16 Receve XAUTH (SET) : 80.80.112.229 -> 80.80.112.221, auth OK
Wednesday August 03, 2005 01:45:16 Send XAUTH (ACK) : 80.80.112.221 -> 80.80.112.229
Wednesday August 03, 2005 01:45:16 Send IKE Q1(QINIT) : 192.168.1.0 --> 192.168.0.0
Wednesday August 03, 2005 01:45:17 Receive IKE Q2(QRESP) : [192.168.0.0|80.80.112.229]-->[80.80.112.221|192.168.1.0]
Wednesday August 03, 2005 01:45:17 Try to match ESP with MODE:Tunnel PROTOCAL:ESP-3DES AUTH:MD5 HASH:Others PFS(Group):Group2
Wednesday August 03, 2005 01:45:17 Send IKE Q3(QHASH) : 192.168.1.0 --> 192.168.0.0
Wednesday August 03, 2005 01:45:17 IKE Phase2 (IPSEC SA) established : [192.168.0.0|80.80.112.229]<->[80.80.112.221|192.168.1.0]
еще непонятно откуда появлется следующее:
Wednesday August 03, 2005 01:52:59 Blocked access attempt from 80.80.112.229:1723 to TCP port 57347
Wednesday August 03, 2005 01:53:01 Blocked access attempt from 80.80.112.229:1723 to TCP port 57347
Wednesday August 03, 2005 01:53:07 Blocked access attempt from 80.80.112.229:1723 to TCP port 57347
Wednesday August 03, 2005 01:53:27 Blocked access attempt from 80.80.112.229:1723 to TCP port 57349
Wednesday August 03, 2005 01:53:30 Blocked access attempt from 80.80.112.229:1723 to TCP port 57349
Очень нужна помощь, спасибо
|