Hi you all,
I use ASL 3.216, and SSH 1.4 as VPN client.
Here is my problem :
After a VPN successfull session, the user disconnect is VPN connection with my ASL. But it seems that ASL or client is trying to keep the connection alive. When i take a look at my logs, i can find entry's about "keying attemps one of unlimited attemps"
i.e:
"Jan 29 00:09:37 (none) Pluto[17751]: "client__vpn_1" xx.xx.xxx.xxx #16: max number of retransmissions (20) reached STATE_MAIN_I1. No acceptable response to our first IKE message"
And after about 60 attemps, ASL is refusing the connection.
i.e: "ERROR: asynchronous network error report on eth2 for message to xx.xx.xxx.xxx port 500, complainant xx.xx.xxx.xxx: Connection refused [errno 111, origin ICMP type 3 code 3 (not authenticated)]"
What does it means ?
The only way that i could stop Ipsec from behave like this is to disable the VPN connection on ASL and then enable it. After this being done, the loging stop.
And if i don't, Ipsec will keep log entry's like that all day long.
Any ideas ??
This thread was automatically locked due to age.