Hi,
I'm hoping someone can please shed some light on the VPN log messages. I have had a site-to-site with an RSA key up and running between two asg's for several weeks and now it suddenly doesn't want to connect. The logs are below. Can someone please give me an english explanation as to what they mean? If you require any more info please let me know.
Thanks in advance.
Log from one end:
2009:02:11-11:04:52 (none) pluto[2499]: "S_Brisbane > Townsville_0" #1: initiating Main Mode
2009:02:11-11:05:22 (none) pluto[2499]: "S_Brisbane > Townsville_0" #1: ignoring Vendor ID payload [strongSwan 4.2.3]
2009:02:11-11:05:22 (none) pluto[2499]: "S_Brisbane > Townsville_0" #1: ignoring Vendor ID payload [Cisco-Unity]
2009:02:11-11:05:22 (none) pluto[2499]: "S_Brisbane > Townsville_0" #1: received Vendor ID payload [XAUTH]
2009:02:11-11:05:22 (none) pluto[2499]: "S_Brisbane > Townsville_0" #1: received Vendor ID payload [Dead Peer Detection]
2009:02:11-11:05:22 (none) pluto[2499]: "S_Brisbane > Townsville_0" #1: received Vendor ID payload [RFC 3947]
2009:02:11-11:05:22 (none) pluto[2499]: "S_Brisbane > Townsville_0" #1: enabling possible NAT-traversal with method 3
2009:02:11-11:05:22 (none) pluto[2499]: "S_Brisbane > Townsville_0" #1: NAT-Traversal: Result using RFC 3947: both are NATed
2009:02:11-11:05:22 (none) pluto[2499]: "S_Brisbane > Townsville_0" #1: we don't have a cert
2009:02:11-11:05:32 (none) pluto[2499]: "S_Brisbane > Townsville_0" #1: discarding duplicate packet; already STATE_MAIN_I3
2009:02:11-11:05:52 (none) pluto[2499]: "S_Brisbane > Townsville_0" #1: discarding duplicate packet; already STATE_MAIN_I3
2009:02:11-11:06:32 (none) pluto[2499]: "S_Brisbane > Townsville_0" #1: max number of retransmissions (2) reached STATE_MAIN_I3. Possible authentication failure: no acceptable response to our first encrypted message
2009:02:11-11:06:32 (none) pluto[2499]: "S_Brisbane > Townsville_0" #1: starting keying attempt 2 of an unlimited number
2009:02:11-11:06:32 (none) pluto[2499]: "S_Brisbane > Townsville_0" #2: initiating Main Mode to replace #1
Log from other end:
2009:02:11-11:05:22 (none) pluto[30367]: "S_Towsville > Brisbane_0" #2: responding to Main Mode
2009:02:11-11:05:22 (none) pluto[30367]: "S_Towsville > Brisbane_0" #2: NAT-Traversal: Result using RFC 3947: both are NATed
2009:02:11-11:06:32 (none) pluto[30367]: "S_Towsville > Brisbane_0" #2: max number of retransmissions (2) reached STATE_MAIN_R2
This thread was automatically locked due to age.