I have trouble with IKE phase 1, I got INVALID_ID_INFORMATION because of the CISCO 801 has a dynamic IP. But Astaro needs IPv4_ID and i don't know how! Had same porblem with software Netways, but finally found where i could enter the virtual IP, defined in PSK. If sombody know how to do that with CISCO, please let me know.
Thx
pluto[11232]: packet from DYN_IP:500: ignoring Vendor ID payload [439b59f8ba676c4c...]
pluto[11232]: packet from DYN_IP:500: received Vendor ID payload [draft-ietf-ipsec-nat-t-ike-03]
pluto[11232]: packet from DYN_IP:500: ignoring Vendor ID payload [draft-ietf-ipsec-nat-t-ike-02_n]
pluto[11232]: "S_Roadwarrior_0"[7] DYN_IP #13: responding to Main Mode from unknown peer DYN_IP
pluto[11232]: "S_Roadwarrior_0"[7] DYN_IP #13: transition from state (null) to state STATE_MAIN_R1
pluto[11232]: "S_Roadwarrior_0"[7] DYN_IP #13: ignoring Vendor ID payload [Cisco-Unity]
pluto[11232]: "S_Roadwarrior_0"[7] DYN_IP #13: received Vendor ID payload [Dead Peer Detection]
pluto[11232]: "S_Roadwarrior_0"[7] DYN_IP #13: ignoring Vendor ID payload [32c71f33c89cb16d...]
pluto[11232]: "S_Roadwarrior_0"[7] DYN_IP #13: ignoring Vendor ID payload [XAUTH]
pluto[11232]: "S_Roadwarrior_0"[7] DYN_IP #13: NAT-Traversal: Result using draft-ietf-ipsec-nat-t-ike-02/03: no NAT detected
pluto[11232]: "S_Roadwarrior_0"[7] DYN_IP #13: transition from state STATE_MAIN_R1 to state STATE_MAIN_R2
pluto[11232]: "S_Roadwarrior_0"[7] DYN_IP #13: ignoring informational payload, type IPSEC_INITIAL_CONTACT
pluto[11232]: "S_Roadwarrior_0"[7] DYN_IP #13: Main mode peer ID is ID_IPV4_ADDR: 'DYN_IP'
pluto[11232]: "S_Roadwarrior_0"[7] DYN_IP #13: transition from state STATE_MAIN_R2 to state STATE_MAIN_R3
pluto[11232]: "S_Roadwarrior_0"[7] DYN_IP #13: sent MR3, ISAKMP SA established
pluto[11232]: "S_Roadwarrior_0"[7] DYN_IP #13: cannot respond to IPsec SA request because no connection is known for 10.5.27.0/24===static_IP_Astaro...DYN_IP===192.168.1.0/24
pluto[11232]: "S_Roadwarrior_0"[7] DYN_IP #13: sending encrypted notification INVALID_ID_INFORMATION to DYN_IP:500
pluto[11232]: "S_Roadwarrior_0"[7] DYN_IP #13: received Delete SA payload: deleting ISAKMP State #13
pluto[11232]: "S_Roadwarrior_0"[7] DYN_IP: deleting connection "S_Roadwarrior_0" instance with peer DYN_IP
pluto[11232]: packet from DYN_IP:500: received and ignored informational message