Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Site-to-Site IPSec VPN

Hi there, 

i got a problem with s2s IPSec VPN between Astaro UTM and a GenIP UMTS Router. 

The Router got an dynamic public IP and is set up to initiate the VPN with PSK.

The Astaro should responde the request but it doesn't work. 

Earlier this day I got the failure that maybe the PSK isn't same on both systems but after I had checked this the message is another. 

2012:12:05-14:30:27 utm pluto[9217]: packet from 88.128.209.173:500: received Vendor ID payload [XAUTH]
2012:12:05-14:30:27 utm pluto[9217]: packet from 88.128.209.173:500: ignoring Vendor ID payload [RFC 3947]
2012:12:05-14:30:27 utm pluto[9217]: packet from 88.128.209.173:500: received Vendor ID payload [Dead Peer Detection]
2012:12:05-14:30:27 utm pluto[9217]: "S_REF_IpsRoaGenip_2"[1] 88.128.209.173 #4: responding to Main Mode from unknown peer 88.128.209.173
2012:12:05-14:30:28 utm pluto[9217]: "S_REF_IpsRoaGenip_2"[1] 88.128.209.173 #4: Peer ID is ID_FQDN: 'GenIP'
2012:12:05-14:30:28 utm pluto[9217]: "S_REF_IpsRoaGenip_2"[2] 88.128.209.173 #4: deleting connection "S_REF_IpsRoaGenip_2"[1] instance with peer 88.128.209.173 {isakmp=#0/ipsec=#0}
2012:12:05-14:30:28 utm pluto[9217]: "S_REF_IpsRoaGenip_2"[2] 88.128.209.173 #4: sent MR3, ISAKMP SA established
2012:12:05-14:30:29 utm pluto[9217]: "S_REF_IpsRoaGenip_2"[2] 88.128.209.173 #4: received Delete SA payload: deleting ISAKMP State #4
2012:12:05-14:30:29 utm pluto[9217]: "S_REF_IpsRoaGenip_2"[2] 88.128.209.173: deleting connection "S_REF_IpsRoaGenip_2"[2] instance with peer 88.128.209.173 {isakmp=#0/ipsec=#0}


I don't know why the connection could be established first and then deleted. 
Maybe someone can help me.

By the way, i tried same with remote IPsec Connection but this won't work aswell.

Cheers delirious


This thread was automatically locked due to age.
Parents Reply Children
No Data