Здарствуйте.
вобщем имем 2 DFL-210 и хотим между нимим поднять ipsec
адресация по wan порту будет статик
DFL-1
LAN- 192.168.1.1/24
WAN-10.10.0.1/24
DFL-2
LAN-192.168.2.1/24
WAN-10.10.0.50/24
хотим чтобы клиенты из одной сети нормально ходили в другую сеть
вроде всё настроил.
в логах ошибки валяться
Код:
2009-10-20
14:15:18 Warning IPSEC
1803020
ipsec_sa_failed
no_ipsec_sa
statusmsg="No proposal chosen"
2009-10-20
14:15:18 Info IPSEC
1800102
ipsec_event
message=" Remote Proxy ID 192.168.2.1 any"
2009-10-20
14:15:18 Info IPSEC
1800102
ipsec_event
message=" Local Proxy ID 1.0.0.1 any"
2009-10-20
14:15:18 Info IPSEC
1802703
ike_sa_negotiation_completed
ike_sa_completed
local_peer="10.10.0.1 ID 10.10.0.1" remote_peer="10.10.0.50 ID 10.10.0.50" initiator_spi="9a4896ce a8c73631" responder_spi="485244e7 54f5094b" int_severity=6
2009-10-20
14:15:18 Info IPSEC
1800102
ipsec_event
message="IPSec SA [Responder] negotiation failed:"
2009-10-20
14:15:18 Notice IPSEC
1802300
rule_selection_failed
info="Quick-Mode local ID mismatch" int_severity=6
2009-10-20
14:15:18 Info IPSEC
1803001
failed_to_select_policy_rule
2009-10-20
14:15:18 Warning IPSEC
1800102
ipsec_event
message=" Remote Proxy ID 192.168.2.1 any"
2009-10-20
14:15:18 Warning IPSEC
1800102
ipsec_event
message=" Local Proxy ID 1.0.0.1 any"
2009-10-20
14:15:18 Info IPSEC
1802703
ike_sa_negotiation_completed
ike_sa_completed
local_peer="10.10.0.1 ID 10.10.0.1" remote_peer="10.10.0.50 ID 10.10.0.50" initiator_spi="9a4896ce a8c73631" responder_spi="485244e7 54f5094b" int_severity=4
2009-10-20
14:15:18 Warning IPSEC
1800102
ipsec_event
message="IPSec SA [Responder] negotiation failed:"
2009-10-20
14:15:18 Info IPSEC
1803024
xauth_exchange_done
statusmsg="Authentication failed"
2009-10-20
14:15:08 Info IPSEC
1803021
ipsec_sa_statistics
done=1366 success=0 failed=1366
2009-10-20
14:15:08 Warning IPSEC
1800109
ike_quickmode_failed
local_ip=10.10.0.1 remote_ip=10.10.0.50 cookies=9a4896cea8c73631485244e754f5094b reason="No proposal chosen"
2009-10-20
14:15:08 Warning IPSEC
1803020
ipsec_sa_failed
no_ipsec_sa
statusmsg="No proposal chosen"
2009-10-20
14:15:08 Info IPSEC
1800102
ipsec_event
message=" Remote Proxy ID 192.168.2.1 any"
2009-10-20
14:15:08 Info IPSEC
1800102
ipsec_event
message=" Local Proxy ID 1.0.0.1 any"
2009-10-20
14:15:08 Info IPSEC
1802703
ike_sa_negotiation_completed
ike_sa_completed
local_peer="10.10.0.1 ID 10.10.0.1" remote_peer="10.10.0.50 ID 10.10.0.50" initiator_spi="9a4896ce a8c73631" responder_spi="485244e7 54f5094b" int_severity=6
2009-10-20
14:15:08 Info IPSEC
1800102
ipsec_event
message="IPSec SA [Responder] negotiation failed:"
2009-10-20
14:15:08 Notice IPSEC
1802300
rule_selection_failed
info="Quick-Mode local ID mismatch" int_severity=6
2009-10-20
14:15:08 Info IPSEC
1803001
failed_to_select_policy_rule
2009-10-20
14:15:08 Warning IPSEC
1800102
ipsec_event
message=" Remote Proxy ID 192.168.2.1 any"
2009-10-20
14:15:08 Warning IPSEC
1800102
ipsec_event
message=" Local Proxy ID 1.0.0.1 any"
2009-10-20
14:15:08 Info IPSEC
1802703
ike_sa_negotiation_completed
ike_sa_completed
local_peer="10.10.0.1 ID 10.10.0.1" remote_peer="10.10.0.50 ID 10.10.0.50" initiator_spi="9a4896ce a8c73631" responder_spi="485244e7 54f5094b" int_severity=4
2009-10-20
14:15:08 Warning IPSEC
1800102
ipsec_event
message="IPSec SA [Responder] negotiation failed:"
2009-10-20
14:15:08 Info IPSEC
1803024
xauth_exchange_done
statusmsg="Authentication failed"
2009-10-20
14:14:58 Info IPSEC
1803021
ipsec_sa_statistics
done=1365 success=0 failed=1365
2009-10-20
14:14:58 Warning IPSEC
1800109
ike_quickmode_failed
local_ip=10.10.0.1 remote_ip=10.10.0.50 cookies=9a4896cea8c73631485244e754f5094b reason="No proposal chosen"
2009-10-20
14:14:58 Warning IPSEC
1803020
ipsec_sa_failed
no_ipsec_sa
statusmsg="No proposal chosen"
2009-10-20
14:14:58 Info IPSEC
1800102
ipsec_event
message=" Remote Proxy ID 192.168.2.1 any"
2009-10-20
14:14:58 Info IPSEC
1800102
ipsec_event
message=" Local Proxy ID 1.0.0.1 any"
2009-10-20
14:14:58 Info IPSEC
1802703
ike_sa_negotiation_completed
ike_sa_completed
local_peer="10.10.0.1 ID 10.10.0.1" remote_peer="10.10.0.50 ID 10.10.0.50" initiator_spi="9a4896ce a8c73631" responder_spi="485244e7 54f5094b" int_severity=6
2009-10-20
14:14:58 Info IPSEC
1800102
ipsec_event
message="IPSec SA [Responder] negotiation failed:"
2009-10-20
14:14:58 Notice IPSEC
1802300
rule_selection_failed
info="Quick-Mode local ID mismatch" int_severity=6
2009-10-20
14:14:58 Info IPSEC
1803001
failed_to_select_policy_rule
2009-10-20
14:14:58 Warning IPSEC
1800102
ipsec_event
message=" Remote Proxy ID 192.168.2.1 any"
2009-10-20
14:14:58 Warning IPSEC
1800102
ipsec_event
message=" Local Proxy ID 1.0.0.1 any"
2009-10-20
14:14:58 Info IPSEC
1802703
ike_sa_negotiation_completed
ike_sa_completed
local_peer="10.10.0.1 ID 10.10.0.1" remote_peer="10.10.0.50 ID 10.10.0.50" initiator_spi="9a4896ce a8c73631" responder_spi="485244e7 54f5094b" int_severity=4
2009-10-20
14:14:58 Warning IPSEC
1800102
ipsec_event
message="IPSec SA [Responder] negotiation failed:"
2009-10-20
14:14:58 Info IPSEC
1803024
xauth_exchange_done
statusmsg="Authentication failed"
2009-10-20
14:14:48 Info IPSEC
1803021
ipsec_sa_statistics
done=1364 success=0 failed=1364
2009-10-20
14:14:48 Warning IPSEC
1800109
ike_quickmode_failed
local_ip=10.10.0.1 remote_ip=10.10.0.50 cookies=9a4896cea8c73631485244e754f5094b reason="No proposal chosen"
2009-10-20
14:14:48 Warning IPSEC
1803020
ipsec_sa_failed
no_ipsec_sa
statusmsg="No proposal chosen"
2009-10-20
14:14:48 Info IPSEC
1800102
ipsec_event
message=" Remote Proxy ID 192.168.2.1 any"
2009-10-20
14:14:48 Info IPSEC
1800102
ipsec_event
message=" Local Proxy ID 1.0.0.1 any"
2009-10-20
14:14:48 Info IPSEC
1802703
ike_sa_negotiation_completed
ike_sa_completed
local_peer="10.10.0.1 ID 10.10.0.1" remote_peer="10.10.0.50 ID 10.10.0.50" initiator_spi="9a4896ce a8c73631" responder_spi="485244e7 54f5094b" int_severity=6
2009-10-20
14:14:48 Info IPSEC
1800102
ipsec_event
message="IPSec SA [Responder] negotiation failed:"
2009-10-20
14:14:48 Notice IPSEC
1802300
rule_selection_failed
info="Quick-Mode local ID mismatch" int_severity=6
2009-10-20
14:14:48 Info IPSEC
1803001
failed_to_select_policy_rule
2009-10-20
14:14:48 Warning IPSEC
1800102
ipsec_event
message=" Remote Proxy ID 192.168.2.1 any"
2009-10-20
14:14:48 Warning IPSEC
1800102
ipsec_event
message=" Local Proxy ID 1.0.0.1 any"
2009-10-20
14:14:48 Info IPSEC
1802703
ike_sa_negotiation_completed
ike_sa_completed
local_peer="10.10.0.1 ID 10.10.0.1" remote_peer="10.10.0.50 ID 10.10.0.50" initiator_spi="9a4896ce a8c73631" responder_spi="485244e7 54f5094b" int_severity=4
2009-10-20
14:14:48 Warning IPSEC
1800102
ipsec_event
message="IPSec SA [Responder] negotiation failed:"
2009-10-20
14:14:48 Info IPSEC
1803024
xauth_exchange_done
statusmsg="Authentication failed"
2009-10-20
14:14:38 Info IPSEC
1803021
ipsec_sa_statistics
done=1363 success=0 failed=1363
2009-10-20
14:14:38 Warning IPSEC
1800109
ike_quickmode_failed
local_ip=10.10.0.1 remote_ip=10.10.0.50 cookies=9a4896cea8c73631485244e754f5094b reason="No proposal chosen"
2009-10-20
14:14:38 Warning IPSEC
1803020
ipsec_sa_failed
no_ipsec_sa
statusmsg="No proposal chosen"
2009-10-20
14:14:38 Info IPSEC
1800102
ipsec_event
message=" Remote Proxy ID 192.168.2.1 any"
2009-10-20
14:14:38 Info IPSEC
1800102
ipsec_event
message=" Local Proxy ID 1.0.0.1 any"
2009-10-20
14:14:38 Info IPSEC
1802703
ike_sa_negotiation_completed
ike_sa_completed
local_peer="10.10.0.1 ID 10.10.0.1" remote_peer="10.10.0.50 ID 10.10.0.50" initiator_spi="9a4896ce a8c73631" responder_spi="485244e7 54f5094b" int_severity=6
2009-10-20
14:14:38 Info IPSEC
1800102
ipsec_event
message="IPSec SA [Responder] negotiation failed:"
2009-10-20
14:14:38 Notice IPSEC
1802300
rule_selection_failed
info="Quick-Mode local ID mismatch" int_severity=6
2009-10-20
14:14:38 Info IPSEC
1803001
failed_to_select_policy_rule
2009-10-20
14:14:38 Warning IPSEC
1800102
ipsec_event
message=" Remote Proxy ID 192.168.2.1 any"
2009-10-20
14:14:38 Warning IPSEC
1800102
ipsec_event
message=" Local Proxy ID 1.0.0.1 any"
2009-10-20
14:14:38 Info IPSEC
1802703
ike_sa_negotiation_completed
ike_sa_completed
local_peer="10.10.0.1 ID 10.10.0.1" remote_peer="10.10.0.50 ID 10.10.0.50" initiator_spi="9a4896ce a8c73631" responder_spi="485244e7 54f5094b" int_severity=4
2009-10-20
14:14:38 Warning IPSEC
1800102
ipsec_event
message="IPSec SA [Responder] negotiation failed:"
2009-10-20
14:14:38 Info IPSEC
1803024
xauth_exchange_done
statusmsg="Authentication failed"
2009-10-20
14:14:28 Info IPSEC
1803021
ipsec_sa_statistics
done=1362 success=0 failed=1362
2009-10-20
14:14:28 Warning IPSEC
1800109
ike_quickmode_failed
local_ip=10.10.0.1 remote_ip=10.10.0.50 cookies=9a4896cea8c73631485244e754f5094b reason="No proposal chosen"
2009-10-20
14:14:28 Warning IPSEC
1803020
ipsec_sa_failed
no_ipsec_sa
statusmsg="No proposal chosen"
2009-10-20
14:14:28 Info IPSEC
1800102
ipsec_event
message=" Remote Proxy ID 192.168.2.1 any"
2009-10-20
14:14:28 Info IPSEC
1800102
ipsec_event
message=" Local Proxy ID 1.0.0.1 any"
2009-10-20
14:14:28 Info IPSEC
1802703
ike_sa_negotiation_completed
ike_sa_completed
local_peer="10.10.0.1 ID 10.10.0.1" remote_peer="10.10.0.50 ID 10.10.0.50" initiator_spi="9a4896ce a8c73631" responder_spi="485244e7 54f5094b" int_severity=6
2009-10-20
14:14:28 Info IPSEC
1800102
ipsec_event
message="IPSec SA [Responder] negotiation failed:"
2009-10-20
14:14:28 Notice IPSEC
1802300
rule_selection_failed
info="Quick-Mode local ID mismatch" int_severity=6
2009-10-20
14:14:28 Info IPSEC
1803001
failed_to_select_policy_rule
2009-10-20
14:14:28 Warning IPSEC
1800102
ipsec_event
message=" Remote Proxy ID 192.168.2.1 any"
2009-10-20
14:14:28 Warning IPSEC
1800102
ipsec_event
message=" Local Proxy ID 1.0.0.1 any"
2009-10-20
14:14:28 Info IPSEC
1802703
ike_sa_negotiation_completed
ike_sa_completed
local_peer="10.10.0.1 ID 10.10.0.1" remote_peer="10.10.0.50 ID 10.10.0.50" initiator_spi="9a4896ce a8c73631" responder_spi="485244e7 54f5094b" int_severity=4
2009-10-20
14:14:28 Warning IPSEC
1800102
ipsec_event
message="IPSec SA [Responder] negotiation failed:"
2009-10-20
14:14:28 Info IPSEC
1803024
xauth_exchange_done
statusmsg="Authentication failed"
2009-10-20
14:14:28 Notice SYSTEM
3204001
accept_configuration
using_new_config
username=admin userdb=AdminUsers client_ip=192.168.1.100 config_system=HTTP
2009-10-20
14:14:28 Notice SYSTEM
3200607
bidir_ok
cfgver=19
2009-10-20
14:14:25 Notice SYSTEM
3202001
startup_echo
delay=15 corever=2.20.01.05-4843 build="Feb 8 2008" uptime=20748 cfgfile="core.cfg" cfgver=19 previous_shutdown="2009-10-20 14:14:02: Activating configuration changes"
2009-10-20
14:14:18 Info IPSEC
1803021
ipsec_sa_statistics
done=1361 success=0 failed=1361
2009-10-20
14:14:18 Warning IPSEC
1800109
ike_quickmode_failed
local_ip=10.10.0.1 remote_ip=10.10.0.50 cookies=9a4896cea8c73631485244e754f5094b reason="No proposal chosen"
2009-10-20
14:14:18 Warning IPSEC
1803020
ipsec_sa_failed
no_ipsec_sa
statusmsg="No proposal chosen"
2009-10-20
14:14:18 Info IPSEC
1800102
ipsec_event
message=" Remote Proxy ID 192.168.2.1 any"
2009-10-20
14:14:18 Info IPSEC
1800102
ipsec_event
message=" Local Proxy ID 1.0.0.1 any"
2009-10-20
14:14:18 Info IPSEC
1802703
ike_sa_negotiation_completed
ike_sa_completed
local_peer="10.10.0.1 ID 10.10.0.1" remote_peer="10.10.0.50 ID 10.10.0.50" initiator_spi="9a4896ce a8c73631" responder_spi="485244e7 54f5094b" int_severity=6
2009-10-20
14:14:18 Info IPSEC
1800102
ipsec_event
message="IPSec SA [Responder] negotiation failed:"
2009-10-20
14:14:18 Notice IPSEC
1802300
rule_selection_failed
info="Quick-Mode local ID mismatch" int_severity=6
2009-10-20
14:14:18 Info IPSEC
1803001
failed_to_select_policy_rule
2009-10-20
14:14:18 Warning IPSEC
1800102
ipsec_event
message=" Remote Proxy ID 192.168.2.1 any"
2009-10-20
14:14:18 Warning IPSEC
1800102
ipsec_event
message=" Local Proxy ID 1.0.0.1 any"
2009-10-20
14:14:18 Info IPSEC
1802703
ike_sa_negotiation_completed
ike_sa_completed
local_peer="10.10.0.1 ID 10.10.0.1" remote_peer="10.10.0.50 ID 10.10.0.50" initiator_spi="9a4896ce a8c73631" responder_spi="485244e7 54f5094b" int_severity=4
2009-10-20
14:14:18 Warning IPSEC
1800102
ipsec_event
message="IPSec SA [Responder] negotiation failed:"
2009-10-20
14:14:18 Info IPSEC
1803024
xauth_exchange_done
statusmsg="Authentication failed"
2009-10-20
14:14:15 Notice SYSTEM
3202001
startup_echo
delay=5 corever=2.20.01.05-4843 build="Feb 8 2008" uptime=20738 cfgfile="core.cfg" cfgver=19 previous_shutdown="2009-10-20 14:14:02: Activating configuration changes"
<< Prev 100 Next 100 >>