[opensuse-es] Otra de cisco VPN 3000 + ipsec linux
Me he quedado en esta situacion. site to site entre un linux y Cisco VPN 3000 Configuracion : ------------------------------------------------------------------------ version 2 config setup forwardcontrol=yes interfaces="ipsec0=eth1" klipsdebug=all nat_traversal=yes plutodebug=all plutostderrlog=/ipsec.log conn %default authby=secret type=tunnel keyingtries=1 #keylife=1200s #ikelifetime=1200s conn conexion auth=esp authby=secret auto=add keyexchange=ike left=mi publica leftnexthop=%direct leftrsasigkey=clave leftsubnet=mi subnet/24 pfs=no right=su publica rightnexthop=%direct rightsubnet=su subnet/24 type=tunnel ike=3des ------------------------------------------------------------------------------------------------------------------- 104 "Conexion" #2: STATE_MAIN_I1: initiate 003 "Conexion" #2: received Vendor ID payload [draft-ietf-ipsec-nat-t-ike-03] method set to=108 003 "Conexion" #2: ignoring unknown Vendor ID payload [4048b7d56756757bce885250000000] 106 "Conexion" #2: STATE_MAIN_I2: sent MI2, expecting MR2 003 "Conexion" #2: ignoring Vendor ID payload [Cisco-Unity] 003 "Conexion" #2: ignoring Vendor ID payload [XAUTH] 003 "Conexion" #2: ignoring unknown Vendor ID payload [51a4f0dd246cbdfyht8hgja8ff122093277] 003 "Conexion" #2: ignoring Vendor ID payload [Cisco VPN 3000 Series] 003 "REE" #2: NAT-Traversal: Result using draft-ietf-ipsec-nat-t-ike-02/03: peer is NATed 108 "Conexion" #2: STATE_MAIN_I3: sent MI3, expecting MR3 010 "Conexion" #2: STATE_MAIN_I3: retransmission; will wait 20s for response 003 "Conexion" #2: discarding duplicate packet; already STATE_MAIN_I3 003 "Conexion" #2: discarding duplicate packet; already STATE_MAIN_I3 003 "Conexion" #2: discarding duplicate packet; already STATE_MAIN_I3 010 "Conexion" #2: STATE_MAIN_I3: retransmission; will wait 40s for response 003 "Conexion" #2: next payload type of ISAKMP Hash Payload has an unknown value: 156 003 "Conexion" #2: malformed payload in packet 031 "Conexion" #2: max number of retransmissions (2) reached STATE_MAIN_I3. Possible authentication failure: no acceptable response to our first encrypted message ¿alguna idea esclarecedora? saludos -- Para dar de baja la suscripción, mande un mensaje a: opensuse-es+unsubscribe@opensuse.org Para obtener el resto de direcciones-comando, mande un mensaje a: opensuse-es+help@opensuse.org
participants (3)
-
Camaleón
-
carlopmart
-
francisco f