Code: Alles auswählen
27 02.02.2014 11:39:04 LOCAL3 Alarm last message repeated 1 time
28 02.02.2014 11:38:03 LOCAL3 Alarm Dst: $routerip:54746 {$routername}, Src: $remoteip:4500 (UDP): connection refused
29 02.02.2014 11:37:00 LOCAL3 Alarm Dst: xxx:123, Src: yyy:1029 {switchee1542} (UDP): connection refused
30 02.02.2014 11:35:59 LOCAL3 Alarm Dst: $routerip:54746 {$routername}, Src: $remoteip:4500 (UDP): connection refused
31 02.02.2014 11:34:58 LOCAL3 Alarm Dst: $remoteip:4500, Src: $localip:4500 {$localname} (UDP): connection refused
Am Client stehen folgende Meldungen im Log:
Code: Alles auswählen
02.02.14 11:31:22,245 racoon[330]: IPSec Phase 2 started (Initiated by me).
02.02.14 11:31:22,254 racoon[330]: >>>>> phase change status = Phase 2 started
02.02.14 11:31:22,263 racoon[330]: IKE Packet: transmit success. (Initiator, Quick-Mode message 1).
02.02.14 11:31:22,306 racoon[330]: attribute has been modified.
02.02.14 11:31:22,307 racoon[330]: IKE Packet: receive success. (Initiator, Quick-Mode message 2).
02.02.14 11:31:22,307 racoon[330]: IKE Packet: transmit success. (Initiator, Quick-Mode message 3).
02.02.14 11:31:22,308 racoon[330]: IKEv1 Phase 2 Initiator: success. (Initiator, Quick-Mode).
02.02.14 11:31:22,308 racoon[330]: IPSec Phase 2 established (Initiated by me).
02.02.14 11:31:22,308 racoon[330]: >>>>> phase change status = Phase 2 established
02.02.14 11:31:22,371 racoon[330]: IKE Packet: receive success. (Information message).
02.02.14 11:35:14,846 racoon[330]: IKE Packet: transmit success. (Information message).
02.02.14 11:35:14,846 racoon[330]: IKEv1 Information-Notice: transmit success. (R-U-THERE?).
02.02.14 11:35:14,846 racoon[330]: IKEv1 Dead-Peer-Detection: request transmitted. (Initiator DPD Request).
02.02.14 11:35:20,339 racoon[330]: IKE Packet: transmit success. (Information message).
02.02.14 11:35:20,339 racoon[330]: IKEv1 Information-Notice: transmit success. (R-U-THERE?).
02.02.14 11:35:20,340 racoon[330]: IKEv1 Dead-Peer-Detection: request retransmitted. (Initiator DPD Request).
02.02.14 11:35:25,798 racoon[330]: IKE Packet: transmit success. (Information message).
02.02.14 11:35:25,798 racoon[330]: IKEv1 Information-Notice: transmit success. (R-U-THERE?).
02.02.14 11:35:25,799 racoon[330]: IKEv1 Dead-Peer-Detection: request retransmitted. (Initiator DPD Request).
02.02.14 11:35:30,799 racoon[330]: IKE Packet: transmit success. (Information message).
02.02.14 11:35:30,799 racoon[330]: IKEv1 Information-Notice: transmit success. (R-U-THERE?).
02.02.14 11:35:30,800 racoon[330]: IKEv1 Dead-Peer-Detection: request retransmitted. (Initiator DPD Request).
02.02.14 11:35:36,285 racoon[330]: IKE Packet: transmit success. (Information message).
02.02.14 11:35:36,285 racoon[330]: IKEv1 Information-Notice: transmit success. (R-U-THERE?).
02.02.14 11:35:36,285 racoon[330]: IKEv1 Dead-Peer-Detection: request retransmitted. (Initiator DPD Request).
02.02.14 11:35:41,781 racoon[330]: IKEv1 Dead-Peer-Detection: maximum retransmits. (DPD maximum retransmits).
02.02.14 11:35:41,783 configd[19]: IPSec Controller: IKE FAILED. phase 6, assert 0
02.02.14 11:35:41,789 configd[19]: IPSec disconnecting from server $remoteip
02.02.14 11:35:41,789 racoon[330]: IPSec disconnecting from server $remoteip
02.02.14 11:35:41,790 racoon[330]: IKE Packet: transmit failed. (Information message).
02.02.14 11:35:41,790 racoon[330]: IKEv1 Information-Notice: transmit failed. (Delete IPSEC-SA).
In den Firewall-Ereignissen des LANmonitor finde ich allerdings keinen Eintrag, daher ist mir auch der Grund nicht klar, weshalb dies passiert.
An welcher Einstellung könnte ich drehen, damit das Problem nicht mehr auftritt bzw. wie könnte ich das debuggen?