Wie schon im Titel erwähnt bekomme ich einen Fehler 4021 beim Verbindungsversuch per Advanced VPN Client 2.23 auf einen Lancom 1721+ VPN.
LCOS ist 8.50.
Die Verbindung von meinem Rechner funktioniert mit demselben Profil, bei welchem es auf dem anderen Rechner fehlschlägt.
Der Problem-Rechner steht bei einem Kunden zuhause und hat als Router einen SpeedPort W500 und AVG Internet Security 2011 installiert. Die Verbindung ließ sich leider auch bei ausgeschalteter Firewall nicht herstellen.
Hoffentlich weiß jemand, was hier zu tun ist.
Mfg calvin
vpn-status:
Code: Alles auswählen
[VPN-Status] 2011/07/07 13:45:23,690
IKE info: The remote server 999.999.64.177:500 (UDP) peer def-aggr-peer id <no_id
> supports draft-ietf-ipsec-isakmp-xauth
IKE info: The remote peer def-aggr-peer supports NAT-T in draft mode
IKE info: The remote peer def-aggr-peer supports NAT-T in draft mode
IKE info: The remote peer def-aggr-peer supports NAT-T in RFC mode
IKE info: The remote server 999.999.64.177:500 (UDP) peer def-aggr-peer id <no_id
> negotiated rfc-3706-dead-peer-detection
IKE info: The remote client 999.999.64.177:500 (UDP) peer def-aggr-peer id <no_id
> is NCP LANCOM Serial Number Protocol 1.0 with serial number 0
[VPN-Status] 2011/07/07 13:45:23,690
IKE info: phase-1 proposal failed: remote No 1 hash algorithm = SHA <-> local No
1 hash algorithm = MD5
IKE info: Phase-1 remote proposal 1 for peer def-aggr-peer matched with local pr
oposal 2
Code: Alles auswählen
07.07.2011 12:32:18System: Initializing FIPS module
07.07.2011 12:32:18System: Initializing FIPS module done
07.07.2011 12:32:18System: Client using OperatingSystem - 5
07.07.2011 12:32:18LANCOM Advanced VPN Client V2.23 Build 18
07.07.2011 12:32:18System: Installed as a test license - 240.
07.07.2011 12:32:18System: License for Oem Version - 5
07.07.2011 12:32:18Firewall: FW configures adapter NCP VPN Adapter
07.07.2011 12:32:18System: Found adapter - name=<1394-Netzwerkadapter> with MTU 1512 bytes
07.07.2011 12:32:18Firewall: FW configures adapter 1394-Netzwerkadapter
07.07.2011 12:32:18System: Adapter init => stopping/starting Boot Firewall (0) due to no FNDMODE or RAS adapter or no IP address for adapter - 1394-Netzwerkadapter
07.07.2011 12:32:18System: Found adapter - name=<NDISWAN> with MTU 1400 bytes
07.07.2011 12:32:18Firewall: FW configures adapter NDISWAN
07.07.2011 12:32:18System: Adapter init => stopping/starting Boot Firewall (0) due to no FNDMODE or RAS adapter or no IP address for adapter - NDISWAN
07.07.2011 12:32:18System: Found adapter - name=<NDISWAN> with MTU 1400 bytes
07.07.2011 12:32:18Firewall: FW configures adapter NDISWAN
07.07.2011 12:32:18System: Adapter init => stopping/starting Boot Firewall (0) due to no FNDMODE or RAS adapter or no IP address for adapter - NDISWAN
07.07.2011 12:32:18System: Found adapter - name=<VIA Rhine III Fast Ethernet Adapter> with MTU 1500 bytes
07.07.2011 12:32:18Firewall: FW configures adapter VIA Rhine III Fast Ethernet Adapter
07.07.2011 12:32:18System: Adapter init => stopping/starting Boot Firewall (0) due to no FNDMODE or RAS adapter or no IP address for adapter - VIA Rhine III Fast Ethernet Adapter
07.07.2011 12:32:18BUDGET: NcpBudgetInit -> No budget manager configuration found
07.07.2011 12:32:18BUDGET: NcpBudgetInit -> OK
07.07.2011 12:32:18MONITOR: Installed - LANCOM Advanced VPN Client 223 Build 18 (923)
07.07.2011 12:32:18MONITOR: Trial version (not started)
07.07.2011 12:33:17System: Installed as a test license.
07.07.2011 12:33:17MONITOR: Trial version started (valid for 30 days)
07.07.2011 12:33:53System: Protecting RAS adapter - 0
07.07.2011 12:33:53System: Protecting RAS adapter - 0
07.07.2011 12:35:16IPSec: Start building connection
07.07.2011 12:35:16IPSec: DNSREQ: resolving dnserver over lan: NAME.DYNDNS.ORG
07.07.2011 12:35:16IPSec: DNSREQ: resolved ipadr: 0999.999.088.005
07.07.2011 12:35:17Ike: Opening connection in PATHFINDER mode : NAMERouter-KUNDE
07.07.2011 12:35:17Ike: Outgoing connect request AGGRESSIVE mode - gateway=999.999.88.5 : NAMERouter-KUNDE
07.07.2011 12:35:17Ike: XMIT_MSG1_AGGRESSIVE - NAMERouter-KUNDE
07.07.2011 12:35:24Ike: Switching to TCP ENCAPSULATION in PATHFINDER : NAMERouter-KUNDE
07.07.2011 12:35:24Ike: Pathfinder-Outgoing connect request AGGRESSIVE mode - : NAMERouter-KUNDE
07.07.2011 12:35:24Ike: XMIT_MSG1_AGGRESSIVE - NAMERouter-KUNDE
07.07.2011 12:35:28Sockif: connectdone ERROR=10061 Locport=9500,rc=-1
07.07.2011 12:35:32ERROR - 4021: IKE(phase1) - Could not contact Gateway (No response) in state <Wait for Message 2> - NAMERouter-KUNDE.
07.07.2011 12:35:32Ike: phase1:name(NAMERouter-KUNDE) - ERROR - retry timeout - max retries
07.07.2011 12:35:32IPSec: Disconnected from NAMERouter-KUNDE on channel 1.
07.07.2011 12:35:33Sockif: connectdone ERROR=10061 Locport=9500,rc=-1
07.07.2011 12:35:37IPSec: Start building connection
07.07.2011 12:35:37IPSec: DNSREQ: resolving dnserver over lan: NAME.DYNDNS.ORG
07.07.2011 12:35:37IPSec: DNSREQ: resolved ipadr: 0999.999.088.005
07.07.2011 12:35:38Ike: Opening connection in PATHFINDER mode : NAMERouter-KUNDE
07.07.2011 12:35:38Ike: Outgoing connect request AGGRESSIVE mode - gateway=999.999.88.5 : NAMERouter-KUNDE
07.07.2011 12:35:38Ike: XMIT_MSG1_AGGRESSIVE - NAMERouter-KUNDE
07.07.2011 12:35:45Ike: Switching to TCP ENCAPSULATION in PATHFINDER : NAMERouter-KUNDE
07.07.2011 12:35:45Ike: Pathfinder-Outgoing connect request AGGRESSIVE mode - : NAMERouter-KUNDE
07.07.2011 12:35:45Ike: XMIT_MSG1_AGGRESSIVE - NAMERouter-KUNDE
07.07.2011 12:35:46Sockif: connectdone ERROR=10061 Locport=9500,rc=-1
07.07.2011 12:35:50Sockif: connectdone ERROR=10061 Locport=9500,rc=-1
07.07.2011 12:35:53ERROR - 4021: IKE(phase1) - Could not contact Gateway (No response) in state <Wait for Message 2> - NAMERouter-KUNDE.
07.07.2011 12:35:53Ike: phase1:name(NAMERouter-KUNDE) - ERROR - retry timeout - max retries
07.07.2011 12:35:53IPSec: Disconnected from NAMERouter-KUNDE on channel 1.
07.07.2011 12:35:54Sockif: connectdone ERROR=10061 Locport=9500,rc=-1