Filter: Autoscroll 2012:11:13-13:00:13 admin ipsec_starter[20469]: Starting strongSwan 4.4.1git20100610 IPsec [starter]... 2012:11:13-13:00:13 admin pluto[20477]: Starting IKEv1 pluto daemon (strongSwan 4.4.1git20100610) THREADS VENDORID CISCO_QUIRKS 2012:11:13-13:00:13 admin ipsec_starter[20475]: pluto (20477) started after 20 ms 2012:11:13-13:00:13 admin pluto[20477]: loaded plugins: curl ldap aes des blowfish serpent twofish sha1 sha2 md5 random x509 pubkey pkcs1 pgp dnskey pem sqlite hmac gmp xauth attr attr-sql resolve 2012:11:13-13:00:13 admin pluto[20477]: including NAT-Traversal patch (Version 0.6c) [disabled] 2012:11:13-13:00:13 admin pluto[20477]: Using Linux 2.6 IPsec interface code 2012:11:13-13:00:14 admin pluto[20477]: loading ca certificates from '/etc/ipsec.d/cacerts' 2012:11:13-13:00:14 admin pluto[20477]: loaded ca certificate from '/etc/ipsec.d/cacerts/CUSTOMERCA.pem' 2012:11:13-13:00:14 admin pluto[20477]: loaded ca certificate from '/etc/ipsec.d/cacerts/VPN Signing CA.pem' 2012:11:13-13:00:14 admin pluto[20477]: loading aa certificates from '/etc/ipsec.d/aacerts' 2012:11:13-13:00:14 admin pluto[20477]: loading ocsp certificates from '/etc/ipsec.d/ocspcerts' 2012:11:13-13:00:14 admin pluto[20477]: Changing to directory '/etc/ipsec.d/crls' 2012:11:13-13:00:14 admin pluto[20477]: loading attribute certificates from '/etc/ipsec.d/acerts' 2012:11:13-13:00:14 admin pluto[20477]: listening for IKE messages 2012:11:13-13:00:14 admin pluto[20477]: adding interface eth1/eth1 E.F.G.H:500 2012:11:13-13:00:14 admin pluto[20477]: adding interface eth0/eth0 A.B.C.D:500 2012:11:13-13:00:14 admin pluto[20477]: adding interface lo/lo 127.0.0.1:500 2012:11:13-13:00:14 admin pluto[20477]: adding interface lo/lo ::1:500 2012:11:13-13:00:14 admin pluto[20477]: loading secrets from "/etc/ipsec.secrets" 2012:11:13-13:00:14 admin pluto[20477]: loaded private key from 'AstaroPOC.cust.mil.pem' 2012:11:13-13:00:14 admin pluto[20477]: loaded host certificate from '/etc/ipsec.d/certs/AstaroPOC.cust.mil.pem' 2012:11:13-13:00:14 admin pluto[20477]: added connection description "S_ASA" 2012:11:13-13:00:14 admin pluto[20477]: "S_ASA" #1: initiating Main Mode 2012:11:13-13:00:14 admin pluto[20477]: "S_ASA" #1: ignoring Vendor ID payload [FRAGMENTATION c0000000] 2012:11:13-13:00:14 admin pluto[20477]: "S_ASA" #1: ignoring Vendor ID payload [Cisco-Unity] 2012:11:13-13:00:14 admin pluto[20477]: "S_ASA" #1: received Vendor ID payload [XAUTH] 2012:11:13-13:00:14 admin pluto[20477]: "S_ASA" #1: ignoring Vendor ID payload [17c05d9de48e91a8acfc39fa7664f532] 2012:11:13-13:00:14 admin pluto[20477]: "S_ASA" #1: ignoring Vendor ID payload [Cisco VPN 3000 Series] 2012:11:13-13:00:14 admin pluto[20477]: "S_ASA" #1: we have a cert and are sending it 2012:11:13-13:00:14 admin pluto[20477]: "S_ASA" #1: Peer ID is ID_IPV4_ADDR: 'M.N.O.P' 2012:11:13-13:00:14 admin pluto[20477]: "S_ASA" #1: crl not found 2012:11:13-13:00:14 admin pluto[20477]: "S_ASA" #1: certificate status unknown 2012:11:13-13:00:14 admin pluto[20477]: "S_ASA" #1: crl not found 2012:11:13-13:00:14 admin pluto[20477]: "S_ASA" #1: certificate status unknown 2012:11:13-13:00:14 admin pluto[20477]: "S_ASA" #1: no public key known for 'M.N.O.P' 2012:11:13-13:00:14 admin pluto[20477]: "S_ASA" #1: sending encrypted notification INVALID_KEY_INFORMATION to M.N.O.P:500 2012:11:13-13:00:14 admin pluto[20477]: "S_ASA" #1: ignoring Delete SA payload: ISAKMP SA not established 2012:11:13-13:01:24 admin pluto[20477]: "S_ASA" #1: max number of retransmissions (2) reached STATE_MAIN_I3. Possible authentication failure: no acceptable response to our first encrypted message 2012:11:13-13:01:24 admin pluto[20477]: "S_ASA" #1: starting keying attempt 2 of an unlimited number 2012:11:13-13:01:24 admin pluto[20477]: "S_ASA" #2: initiating Main Mode to replace #1 2012:11:13-13:01:24 admin pluto[20477]: "S_ASA" #2: ignoring Vendor ID payload [FRAGMENTATION c0000000] 2012:11:13-13:01:24 admin pluto[20477]: "S_ASA" #2: ignoring Vendor ID payload [Cisco-Unity] 2012:11:13-13:01:24 admin pluto[20477]: "S_ASA" #2: received Vendor ID payload [XAUTH] 2012:11:13-13:01:24 admin pluto[20477]: "S_ASA" #2: ignoring Vendor ID payload [09204dbfe7ed5c43b491a8bf23ccc862] 2012:11:13-13:01:24 admin pluto[20477]: "S_ASA" #2: ignoring Vendor ID payload [Cisco VPN 3000 Series] 2012:11:13-13:01:24 admin pluto[20477]: "S_ASA" #2: we have a cert and are sending it 2012:11:13-13:01:24 admin pluto[20477]: "S_ASA" #2: Peer ID is ID_IPV4_ADDR: 'M.N.O.P' 2012:11:13-13:01:24 admin pluto[20477]: "S_ASA" #2: crl not found 2012:11:13-13:01:24 admin pluto[20477]: "S_ASA" #2: certificate status unknown 2012:11:13-13:01:24 admin pluto[20477]: "S_ASA" #2: crl not found 2012:11:13-13:01:24 admin pluto[20477]: "S_ASA" #2: certificate status unknown 2012:11:13-13:01:24 admin pluto[20477]: "S_ASA" #2: no public key known for 'M.N.O.P' 2012:11:13-13:01:24 admin pluto[20477]: "S_ASA" #2: sending encrypted notification INVALID_KEY_INFORMATION to M.N.O.P:500 2012:11:13-13:01:24 admin pluto[20477]: "S_ASA" #2: ignoring Delete SA payload: ISAKMP SA not established 2012:11:13-13:02:35 admin pluto[20477]: "S_ASA" #2: max number of retransmissions (2) reached STATE_MAIN_I3. Possible authentication failure: no acceptable response to our first encrypted message 2012:11:13-13:02:35 admin pluto[20477]: "S_ASA" #2: starting keying attempt 3 of an unlimited number 2012:11:13-13:02:35 admin pluto[20477]: "S_ASA" #3: initiating Main Mode to replace #2 2012:11:13-13:02:35 admin pluto[20477]: "S_ASA" #3: ignoring Vendor ID payload [FRAGMENTATION c0000000] 2012:11:13-13:02:35 admin pluto[20477]: "S_ASA" #3: ignoring Vendor ID payload [Cisco-Unity] 2012:11:13-13:02:35 admin pluto[20477]: "S_ASA" #3: received Vendor ID payload [XAUTH] 2012:11:13-13:02:35 admin pluto[20477]: "S_ASA" #3: ignoring Vendor ID payload [25e349bcdd161ab945039f2a43582fe2] 2012:11:13-13:02:35 admin pluto[20477]: "S_ASA" #3: ignoring Vendor ID payload [Cisco VPN 3000 Series] 2012:11:13-13:02:35 admin pluto[20477]: "S_ASA" #3: we have a cert and are sending it 2012:11:13-13:02:35 admin pluto[20477]: "S_ASA" #3: Peer ID is ID_IPV4_ADDR: 'M.N.O.P' 2012:11:13-13:02:35 admin pluto[20477]: "S_ASA" #3: crl not found 2012:11:13-13:02:35 admin pluto[20477]: "S_ASA" #3: certificate status unknown 2012:11:13-13:02:35 admin pluto[20477]: "S_ASA" #3: crl not found 2012:11:13-13:02:35 admin pluto[20477]: "S_ASA" #3: certificate status unknown 2012:11:13-13:02:35 admin pluto[20477]: "S_ASA" #3: no public key known for 'M.N.O.P' 2012:11:13-13:02:35 admin pluto[20477]: "S_ASA" #3: sending encrypted notification INVALID_KEY_INFORMATION to M.N.O.P:500 2012:11:13-13:02:35 admin pluto[20477]: "S_ASA" #3: ignoring Delete SA payload: ISAKMP SA not established 2012:11:13-13:03:45 admin pluto[20477]: "S_ASA" #3: max number of retransmissions (2) reached STATE_MAIN_I3. Possible authentication failure: no acceptable response to our first encrypted message 2012:11:13-13:03:45 admin pluto[20477]: "S_ASA" #3: starting keying attempt 4 of an unlimited number 2012:11:13-13:03:45 admin pluto[20477]: "S_ASA" #4: initiating Main Mode to replace #3 2012:11:13-13:03:45 admin pluto[20477]: "S_ASA" #4: ignoring Vendor ID payload [FRAGMENTATION c0000000] 2012:11:13-13:03:45 admin pluto[20477]: "S_ASA" #4: ignoring Vendor ID payload [Cisco-Unity] 2012:11:13-13:03:45 admin pluto[20477]: "S_ASA" #4: received Vendor ID payload [XAUTH] 2012:11:13-13:03:45 admin pluto[20477]: "S_ASA" #4: ignoring Vendor ID payload [db05693ec158c531b93bec5991d2f6ba] 2012:11:13-13:03:45 admin pluto[20477]: "S_ASA" #4: ignoring Vendor ID payload [Cisco VPN 3000 Series] 2012:11:13-13:03:45 admin pluto[20477]: "S_ASA" #4: we have a cert and are sending it 2012:11:13-13:03:45 admin pluto[20477]: "S_ASA" #4: Peer ID is ID_IPV4_ADDR: 'M.N.O.P' 2012:11:13-13:03:45 admin pluto[20477]: "S_ASA" #4: crl not found 2012:11:13-13:03:45 admin pluto[20477]: "S_ASA" #4: certificate status unknown 2012:11:13-13:03:45 admin pluto[20477]: "S_ASA" #4: crl not found 2012:11:13-13:03:45 admin pluto[20477]: "S_ASA" #4: certificate status unknown 2012:11:13-13:03:45 admin pluto[20477]: "S_ASA" #4: no public key known for 'M.N.O.P' 2012:11:13-13:03:45 admin pluto[20477]: "S_ASA" #4: sending encrypted notification INVALID_KEY_INFORMATION to M.N.O.P:500 2012:11:13-13:03:45 admin pluto[20477]: "S_ASA" #4: ignoring Delete SA payload: ISAKMP SA not established