This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

CISCO 801 -> ASL 5.203

hi,

try nearly 2 weeks to connect them via VPN. I had read all the howtos, but I in every howto the CISCO Router has an static IP in Internet. When I connect with PSK the I got the msg "INVALID_ID_INFORMATION". Here Astaro log.

pluto[11232]: packet from DYN_IP:500: ignoring Vendor ID payload [439b59f8ba676c4c...] 
pluto[11232]: packet from DYN_IP:500: received Vendor ID payload [draft-ietf-ipsec-nat-t-ike-03] 
pluto[11232]: packet from DYN_IP:500: ignoring Vendor ID payload [draft-ietf-ipsec-nat-t-ike-02_n] 
pluto[11232]: "S_Roadwarrior_0"[7] DYN_IP #13: responding to Main Mode from unknown peer DYN_IP 
pluto[11232]: "S_Roadwarrior_0"[7] DYN_IP #13: transition from state (null) to state STATE_MAIN_R1 
pluto[11232]: "S_Roadwarrior_0"[7] DYN_IP #13: ignoring Vendor ID payload [Cisco-Unity] 
pluto[11232]: "S_Roadwarrior_0"[7] DYN_IP #13: received Vendor ID payload [Dead Peer Detection] 
pluto[11232]: "S_Roadwarrior_0"[7] DYN_IP #13: ignoring Vendor ID payload [32c71f33c89cb16d...] 
pluto[11232]: "S_Roadwarrior_0"[7] DYN_IP #13: ignoring Vendor ID payload [XAUTH] 
pluto[11232]: "S_Roadwarrior_0"[7] DYN_IP #13: NAT-Traversal: Result using draft-ietf-ipsec-nat-t-ike-02/03: no NAT detected 
pluto[11232]: "S_Roadwarrior_0"[7] DYN_IP #13: transition from state STATE_MAIN_R1 to state STATE_MAIN_R2 
pluto[11232]: "S_Roadwarrior_0"[7] DYN_IP #13: ignoring informational payload, type IPSEC_INITIAL_CONTACT 
pluto[11232]: "S_Roadwarrior_0"[7] DYN_IP #13: Main mode peer ID is ID_IPV4_ADDR: 'DYN_IP' 
pluto[11232]: "S_Roadwarrior_0"[7] DYN_IP #13: transition from state STATE_MAIN_R2 to state STATE_MAIN_R3 
pluto[11232]: "S_Roadwarrior_0"[7] DYN_IP #13: sent MR3, ISAKMP SA established 
pluto[11232]: "S_Roadwarrior_0"[7] DYN_IP #13: cannot respond to IPsec SA request because no connection is known for 10.5.27.0/24===static_IP_Astaro...DYN_IP===192.168.1.0/24 
pluto[11232]: "S_Roadwarrior_0"[7] DYN_IP #13: sending encrypted notification INVALID_ID_INFORMATION to DYN_IP:500 
pluto[11232]: "S_Roadwarrior_0"[7] DYN_IP #13: received Delete SA payload: deleting ISAKMP State #13 
pluto[11232]: "S_Roadwarrior_0"[7] DYN_IP: deleting connection "S_Roadwarrior_0" instance with peer DYN_IP 
pluto[11232]: packet from DYN_IP:500: received and ignored informational message

I think the problem is the dynamic IP, what can I do?

Thx


This thread was automatically locked due to age.