Problem mit 1-Click VPn zwischen 1823 und 1811

Forum zum Thema allgemeinen Fragen zu VPN

Moderator: Lancom-Systems Moderatoren

Antworten
mistry7
Beiträge: 231
Registriert: 14 Apr 2006, 19:12

Problem mit 1-Click VPn zwischen 1823 und 1811

Beitrag von mistry7 »

Hallo,

ich kämpfe mit einem VPN zwischen einem 1823 (Feste IP) und einem 1811 (T-Online), wenn ich das per 1-Click VPN mit Lanconfig konfigurieren lasse, kommt eine
VPn-Verbindung zu Stande, diese wird jedoch alle 30s getrennt und ist nicht nutzbar.

Code: Alles auswählen

 
[VPN-Status] 2010/01/18 15:12:00,430
VPN: Disconnect info: physical-disconnected (0x4304) for DIETMAR_93_2 (93.212.23.192)

[VPN-Status] 2010/01/18 15:12:00,430
VPN: disconnecting DIETMAR_93_2 (93.212.23.192)

[VPN-Status] 2010/01/18 15:12:00,430
VPN: Disconnect info: physical-disconnected (0x4304) for DIETMAR_93_2 (93.212.23.192)

[VPN-Status] 2010/01/18 15:12:00,450
IKE info: Delete Notificaton sent for Phase-2 SA ipsec-0-DIETMAR_93_2-pr0-l1-r0 to peer DIETMAR_93_2, spi [0x37a99728]


[VPN-Status] 2010/01/18 15:12:00,450
IKE info: Phase-2 SA removed: peer DIETMAR_93_2 rule ipsec-0-DIETMAR_93_2-pr0-l1-r0 removed
IKE info: containing Protocol IPSEC_ESP, with spis [099fbc9c  ] [37a99728  ]


[VPN-Status] 2010/01/18 15:12:00,450
IKE info: Delete Notificaton sent for Phase-2 SA ipsec-0-DIETMAR_93_2-pr0-l2-r0 to peer DIETMAR_93_2, spi [0x56f32e1e]


[VPN-Status] 2010/01/18 15:12:00,450
IKE info: Phase-2 SA removed: peer DIETMAR_93_2 rule ipsec-0-DIETMAR_93_2-pr0-l2-r0 removed
IKE info: containing Protocol IPSEC_ESP, with spis [02ca3a4e  ] [56f32e1e  ]


[VPN-Status] 2010/01/18 15:12:00,450
IKE info: Delete Notificaton sent for Phase-2 SA ipsec-0-DIETMAR_93_2-pr0-l0-r0 to peer DIETMAR_93_2, spi [0x6f0b61f0]


[VPN-Status] 2010/01/18 15:12:00,450
IKE info: Phase-2 SA removed: peer DIETMAR_93_2 rule ipsec-0-DIETMAR_93_2-pr0-l0-r0 removed
IKE info: containing Protocol IPSEC_ESP, with spis [37a99728  ] [6f0b61f0  ]


[VPN-Status] 2010/01/18 15:12:00,450
IKE info: Delete Notificaton sent for Phase-1 SA to peer DIETMAR_93_2


[VPN-Status] 2010/01/18 15:12:00,450
IKE info: Phase-1 SA removed: peer DIETMAR_93_2 rule DIETMAR_93_2 removed


[VPN-Status] 2010/01/18 15:12:00,500
selecting first remote gateway using strategy eFirst for DIETMAR_93_2
     => no remote gateway selected

[VPN-Status] 2010/01/18 15:12:00,500
VPN: installing ruleset for DIETMAR_93_2 (0.0.0.0)

[VPN-Status] 2010/01/18 15:12:00,510
VPN: DIETMAR_93_2 (0.0.0.0) disconnected

[VPN-Status] 2010/01/18 15:12:00,530
VPN: rulesets installed

[VPN-Status] 2010/01/18 15:12:02,040
VPN: connecting to DIETMAR_93_2 (0.0.0.0)
VPN: establish dynamic VPN negotiator channel

[VPN-Status] 2010/01/18 15:12:02,050
VPN: Error: IFC-I-No-channel-available (0x1102) for DIETMAR_93_2 (0.0.0.0)

[VPN-Status] 2010/01/18 15:12:04,780
VPN: connecting to DIETMAR_93_2 (0.0.0.0)
VPN: establish dynamic VPN negotiator channel

[VPN-Status] 2010/01/18 15:12:04,780
VPN: Error: IFC-I-No-channel-available (0x1102) for DIETMAR_93_2 (0.0.0.0)

[VPN-Status] 2010/01/18 15:12:13,570
IKE log: 151213.000000 Default message_recv: invalid cookie(s) 8e1c859144e25ee6 d1bbb25cf3bd1445


[VPN-Status] 2010/01/18 15:12:13,570
IKE log: 151213.000000 Default dropped message from 93.212.23.192 port 500 due to notification type INVALID_COOKIE


[VPN-Status] 2010/01/18 15:12:13,570
IKE info: dropped message from peer unknown 93.212.23.192 port 500 due to notification type INVALID_COOKIE


[VPN-Status] 2010/01/18 15:12:13,570
IKE log: 151213.000000 Default message_recv: invalid cookie(s) 8e1c859144e25ee6 d1bbb25cf3bd1445


[VPN-Status] 2010/01/18 15:12:13,570
IKE log: 151213.000000 Default dropped message from 93.212.23.192 port 500 due to notification type INVALID_COOKIE


[VPN-Status] 2010/01/18 15:12:13,570
IKE info: dropped message from peer unknown 93.212.23.192 port 500 due to notification type INVALID_COOKIE


[VPN-Status] 2010/01/18 15:12:13,570
IKE log: 151213.000000 Default message_recv: invalid cookie(s) 8e1c859144e25ee6 d1bbb25cf3bd1445


[VPN-Status] 2010/01/18 15:12:13,570
IKE log: 151213.000000 Default dropped message from 93.212.23.192 port 500 due to notification type INVALID_COOKIE


[VPN-Status] 2010/01/18 15:12:13,570
IKE info: dropped message from peer unknown 93.212.23.192 port 500 due to notification type INVALID_COOKIE


[VPN-Status] 2010/01/18 15:12:14,590
VPN: received dynamic VPN V2 authentication packet from DIETMAR_93_2 (93.212.23.192)
     DNS: 192.168.1.200, 0.0.0.0
     NBNS: 192.168.1.200, 0.0.0.0
     polling address: 192.168.1.200

[VPN-Status] 2010/01/18 15:12:14,590
VPN: installing ruleset for DIETMAR_93_2 (93.212.23.192)

[VPN-Status] 2010/01/18 15:12:14,600
VPN: ruleset installed for DIETMAR_93_2 (93.212.23.192)

[VPN-Status] 2010/01/18 15:12:14,600
VPN: start dynamic VPN negotiation for DIETMAR_93_2 (93.212.23.192) via ICMP/UDP

[VPN-Status] 2010/01/18 15:12:14,600
VPN: create dynamic VPN V2 authentication packet for DIETMAR_93_2 (93.212.23.192)
     DNS: 192.168.3.254, 0.0.0.0
     NBNS: 192.168.3.254, 0.0.0.0
     polling address: 192.168.3.254

[VPN-Status] 2010/01/18 15:12:14,600
VPN: wait for IKE negotiation from DIETMAR_93_2 (93.212.23.192)

[VPN-Status] 2010/01/18 15:12:14,620
VPN: rulesets installed

[VPN-Status] 2010/01/18 15:12:14,720
VPN: received dynamic VPN V2 authentication packet from DIETMAR_93_2 (93.212.23.192)
     DNS: 192.168.1.200, 0.0.0.0
     NBNS: 192.168.1.200, 0.0.0.0
     polling address: 192.168.1.200

[VPN-Status] 2010/01/18 15:12:14,730
IKE info: The remote server 93.212.23.192:500 peer DIETMAR_93_2 id <no_id> is Enigmatec IPSEC version 1.5.1
IKE info: The remote server 93.212.23.192:500 peer DIETMAR_93_2 id <no_id> negotiated rfc-3706-dead-peer-detection


[VPN-Status] 2010/01/18 15:12:14,730
IKE info: Phase-1 remote proposal 1 for peer DIETMAR_93_2 matched with local proposal 1


[VPN-Status] 2010/01/18 15:12:15,040
IKE info: Phase-1 [responder] for peer DIETMAR_93_2 between initiator id  93.212.23.192, responder id  85.199.166.254 done
IKE info: SA ISAKMP for peer DIETMAR_93_2 encryption aes-cbc authentication md5
IKE info: life time ( 108000 sec/ 0 kb)


[VPN-Status] 2010/01/18 15:12:15,040
IKE info: Phase-1 SA Rekeying Timeout (Soft-Event) for peer DIETMAR_93_2 set to 97200 seconds (Responder)


[VPN-Status] 2010/01/18 15:12:15,040
IKE info: Phase-1 SA Timeout (Hard-Event) for peer DIETMAR_93_2 set to 108000 seconds (Responder)


[VPN-Status] 2010/01/18 15:12:15,140
IKE info: Phase-2 remote proposal 1 for peer DIETMAR_93_2 matched with local proposal 1


[VPN-Status] 2010/01/18 15:12:15,240
IKE info: Phase-2 remote proposal 1 for peer DIETMAR_93_2 matched with local proposal 1


[VPN-Status] 2010/01/18 15:12:15,250
IKE info: Phase-2 remote proposal 1 for peer DIETMAR_93_2 matched with local proposal 1


[VPN-Status] 2010/01/18 15:12:15,250
IKE info: Phase-2 SA Rekeying Timeout (Soft-Event) for peer DIETMAR_93_2 set to 1800 seconds (Responder)


[VPN-Status] 2010/01/18 15:12:15,250
IKE info: Phase-2 SA Timeout (Hard-Event) for peer DIETMAR_93_2 set to 2000 seconds (Responder)


[VPN-Status] 2010/01/18 15:12:15,250
IKE info: Phase-2 [responder] done with 2 SAS for peer DIETMAR_93_2 rule ipsec-0-DIETMAR_93_2-pr0-l0-r0
IKE info: rule:' ipsec 192.168.0.0/255.255.0.0 <-> 192.168.1.0/255.255.255.0 '
IKE info: SA ESP [0x679e0eb5]  alg AES keylength 128 +hmac HMAC_MD5 outgoing
IKE info: SA ESP [0x52775f3e]  alg AES keylength 128 +hmac HMAC_MD5 incoming
IKE info: life soft( 1800 sec/180000 kb) hard (2000 sec/200000 kb)
IKE info: tunnel between src: 85.199.166.254 dst: 93.212.23.192  


[VPN-Status] 2010/01/18 15:12:15,460
IKE info: Phase-2 SA Rekeying Timeout (Soft-Event) for peer DIETMAR_93_2 set to 1800 seconds (Responder)


[VPN-Status] 2010/01/18 15:12:15,460
IKE info: Phase-2 SA Timeout (Hard-Event) for peer DIETMAR_93_2 set to 2000 seconds (Responder)


[VPN-Status] 2010/01/18 15:12:15,460
IKE info: Phase-2 [responder] done with 2 SAS for peer DIETMAR_93_2 rule ipsec-0-DIETMAR_93_2-pr0-l1-r0
IKE info: rule:' ipsec 172.16.0.0/255.240.0.0 <-> 192.168.1.0/255.255.255.0 '
IKE info: SA ESP [0x1676b71f]  alg AES keylength 128 +hmac HMAC_MD5 outgoing
IKE info: SA ESP [0x0a2df945]  alg AES keylength 128 +hmac HMAC_MD5 incoming
IKE info: life soft( 1800 sec/180000 kb) hard (2000 sec/200000 kb)
IKE info: tunnel between src: 85.199.166.254 dst: 93.212.23.192  


[VPN-Status] 2010/01/18 15:12:15,610
IKE info: Phase-2 SA Rekeying Timeout (Soft-Event) for peer DIETMAR_93_2 set to 1800 seconds (Responder)


[VPN-Status] 2010/01/18 15:12:15,610
IKE info: Phase-2 SA Timeout (Hard-Event) for peer DIETMAR_93_2 set to 2000 seconds (Responder)


[VPN-Status] 2010/01/18 15:12:15,610
IKE info: Phase-2 [responder] done with 2 SAS for peer DIETMAR_93_2 rule ipsec-0-DIETMAR_93_2-pr0-l2-r0
IKE info: rule:' ipsec 10.0.0.0/255.0.0.0 <-> 192.168.1.0/255.255.255.0 '
IKE info: SA ESP [0x5dd04373]  alg AES keylength 128 +hmac HMAC_MD5 outgoing
IKE info: SA ESP [0x6c167385]  alg AES keylength 128 +hmac HMAC_MD5 incoming
IKE info: life soft( 1800 sec/180000 kb) hard (2000 sec/200000 kb)
IKE info: tunnel between src: 85.199.166.254 dst: 93.212.23.192  


[VPN-Status] 2010/01/18 15:12:16,610
VPN: DIETMAR_93_2 (93.212.23.192) connected, set poll timer to 30 sec

[VPN-Status] 2010/01/18 15:12:21,610
VPN: poll timeout for DIETMAR_93_2 (93.212.23.192)
send poll frame to 192.168.1.200
grüße

mistry7[/code]
1x1823, 3x1811, 1x1821, 3x 1521, 2x 1511, 8x L-54dual, 3x L-54ag, 4x L-54g => 70 User mit DSLper WLAN
Antworten