This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Site to Site VPN Problem - Astaro to BSD

Trying to setup a VPN connection between an Astaro (5.20) and a Unix BSD box.  Here is the error message on the VPN status page.
000  
000 "S_MHCDC__Secondary__Connection_0": 192.168.200.0/24===67.37.28.185...64.109.29.222===172.20.0.0/16
000 "S_MHCDC__Secondary__Connection_0":   CAs: '%any'...'%any'
000 "S_MHCDC__Secondary__Connection_0":   ike_life: 7800s; ipsec_life: 3600s; rekey_margin: 540s; rekey_fuzz: 100%; keyingtries: 0
000 "S_MHCDC__Secondary__Connection_0":   policy: PSK+ENCRYPT+TUNNEL; interface: eth0; unrouted
000 "S_MHCDC__Secondary__Connection_0":   newest ISAKMP SA: #0; newest IPsec SA: #0; eroute owner: #0
000 "S_MHCDC__Secondary__Connection_0":   IKE algorithms wanted: 5_000-1-5, flags=-strict
000 "S_MHCDC__Secondary__Connection_0":   IKE algorithms found:  5_192-1_128-5, 
000 "S_MHCDC__Secondary__Connection_0":   ESP algorithms wanted: 3_000-1, flags=-strict
000 "S_MHCDC__Secondary__Connection_0":   ESP algorithms loaded: 3_168-1_128, 
000  
000 #12: "S_MHCDC__Secondary__Connection_0" STATE_MAIN_I1 (sent MI1, expecting MR1); EVENT_RETRANSMIT in 25s
000  

Any ideas?

Thanks
Kevin


This thread was automatically locked due to age.
Parents
  • Maybe it would be useful if you could post some more details about such configuration. Is it anPSK  or an RSA, what encryption, what Phase 1 and Phase 2 settings?
    Did you try the IKE debugging option? eventually, what's the log relevant content of it?

    Both sides of the VPN, please

    friscom
Reply
  • Maybe it would be useful if you could post some more details about such configuration. Is it anPSK  or an RSA, what encryption, what Phase 1 and Phase 2 settings?
    Did you try the IKE debugging option? eventually, what's the log relevant content of it?

    Both sides of the VPN, please

    friscom
Children
No Data