Danke für die Antworten.
ja ich hab es nach der Anleitung eingerichtet. Doch dann funktioniert es leider nicht.
ich hab jetzt nochmal was umgestellt.
[TraceStarted] 2008/08/25 18:47:47,000
Used config:
trace + VPN-Status
trace + VPN-Packet
[VPN-Status] 2008/08/25 18:47:50,820
IKE info: The remote server xxxx:500 peer DRAYTEK id <no_id> negotiated rfc-3706-dead-peer-detection
IKE info: The remote server xxxx:500 peer DRAYTEK id <no_id> supports NAT-T in mode rfc
IKE info: The remote server xxxx:500 peer DRAYTEK id <no_id> supports NAT-T in mode rfc
IKE info: The remote server xxxx:500 peer DRAYTEK id <no_id> supports NAT-T in mode rfc
IKE info: The remote server xxxx:500 peer DRAYTEK id <no_id> supports NAT-T in mode rfc
IKE info: The remote server xxxx:500 peer DRAYTEK id <no_id> supports NAT-T in mode rfc
[VPN-Status] 2008/08/25 18:47:50,830
IKE info: phase-1 proposal failed: remote No 1 encryption algorithm = DES_CBC <-> local No 1 encryption algorithm = AES_CBC
IKE info: phase-1 proposal failed: remote No 1 encryption algorithm = DES_CBC <-> local No 2 encryption algorithm = AES_CBC
IKE info: phase-1 proposal failed: remote No 1 encryption algorithm = DES_CBC <-> local No 3 encryption algorithm = BLOWFISH_CBC
IKE info: phase-1 proposal failed: remote No 1 encryption algorithm = DES_CBC <-> local No 4 encryption algorithm = BLOWFISH_CBC
IKE info: phase-1 proposal failed: remote No 1 encryption algorithm = DES_CBC <-> local No 5 encryption algorithm = 3DES_CBC
IKE info: phase-1 proposal failed: remote No 1 encryption algorithm = DES_CBC <-> local No 6 encryption algorithm = 3DES_CBC
IKE info: phase-1 proposal failed: remote No 1 encryption algorithm = DES_CBC <-> local No 7 encryption algorithm = CAST_CBC
IKE info: phase-1 proposal failed: remote No 1 encryption algorithm = DES_CBC <-> local No 8 encryption algorithm = CAST_CBC
IKE info: Phase-1 remote proposal 1 failed for peer DRAYTEK
IKE info: phase-1 proposal failed: remote No 2 encryption algorithm = DES_CBC <-> local No 1 encryption algorithm = AES_CBC
IKE info: phase-1 proposal failed: remote No 2 encryption algorithm = DES_CBC <-> local No 2 encryption algorithm = AES_CBC
IKE info: phase-1 proposal failed: remote No 2 encryption algorithm = DES_CBC <-> local No 3 encryption algorithm = BLOWFISH_CBC
IKE info: phase-1 proposal failed: remote No 2 encryption algorithm = DES_CBC <-> local No 4 encryption algorithm = BLOWFISH_CBC
IKE info: phase-1 proposal failed: remote No 2 encryption algorithm = DES_CBC <-> local No 5 encryption algorithm = 3DES_CBC
IKE info: phase-1 proposal failed: remote No 2 encryption algorithm = DES_CBC <-> local No 6 encryption algorithm = 3DES_CBC
IKE info: phase-1 proposal failed: remote No 2 encryption algorithm = DES_CBC <-> local No 7 encryption algorithm = CAST_CBC
IKE info: phase-1 proposal failed: remote No 2 encryption algorithm = DES_CBC <-> local No 8 encryption algorithm = CAST_CBC
IKE info: Phase-1 remote proposal 2 failed for peer DRAYTEK
IKE info: phase-1 proposal failed: remote No 3 encryption algorithm = 3DES_CBC <-> local No 1 encryption algorithm = AES_CBC
IKE info: phase-1 proposal failed: remote No 3 encryption algorithm = 3DES_CBC <-> local No 2 encryption algorithm = AES_CBC
IKE info: phase-1 proposal failed: remote No 3 encryption algorithm = 3DES_CBC <-> local No 3 encryption algorithm = BLOWFISH_CBC
IKE info: phase-1 proposal failed: remote No 3 encryption algorithm = 3DES_CBC <-> local No 4 encryption algorithm = BLOWFISH_CBC
IKE info: phase-1 proposal failed: remote No 3 group = 1 <-> local No 5 group = 2
IKE info: phase-1 proposal failed: remote No 3 hash algorithm = MD5 <-> local No 6 hash algorithm = SHA
IKE info: phase-1 proposal failed: remote No 3 encryption algorithm = 3DES_CBC <-> local No 7 encryption algorithm = CAST_CBC
IKE info: phase-1 proposal failed: remote No 3 encryption algorithm = 3DES_CBC <-> local No 8 encryption algorithm = CAST_CBC
IKE info: Phase-1 remote proposal 3 failed for peer DRAYTEK
IKE info: phase-1 proposal failed: remote No 4 encryption algorithm = 3DES_CBC <-> local No 1 encryption algorithm = AES_CBC
IKE info: phase-1 proposal failed: remote No 4 encryption algorithm = 3DES_CBC <-> local No 2 encryption algorithm = AES_CBC
IKE info: phase-1 proposal failed: remote No 4 encryption algorithm = 3DES_CBC <-> local No 3 encryption algorithm = BLOWFISH_CBC
IKE info: phase-1 proposal failed: remote No 4 encryption algorithm = 3DES_CBC <-> local No 4 encryption algorithm = BLOWFISH_CBC
IKE info: Phase-1 remote proposal 4 for peer DRAYTEK matched with local proposal 5
[VPN-Status] 2008/08/25 18:47:51,280
VPN: Error: IKE-R-IKE-group-mismatch (0x2204) for DRAYTEK (xxxx)
[VPN-Status] 2008/08/25 18:47:51,280
VPN: selecting next remote gateway using strategy eFirst for DRAYTEK
=> no remote gateway selected
[VPN-Status] 2008/08/25 18:47:51,280
VPN: selecting first remote gateway using strategy eFirst for DRAYTEK
=> CurrIdx=0, IpStr=>xxxx<, IpAddr=xxxx, IpTtl=0s
[VPN-Status] 2008/08/25 18:47:51,280
VPN: installing ruleset for DRAYTEK (xxxx)
[VPN-Status] 2008/08/25 18:47:51,450
VPN: rulesets installed
[VPN-Status] 2008/08/25 18:47:51,870
IKE info: Phase-1 [responder] got initial contact from peer DRAYTEK (xxxx)
[VPN-Status] 2008/08/25 18:47:51,870
IKE info: Phase-1 [responder] for peer DRAYTEK between initiator id xxxx, responder id xxxx done
IKE info: SA ISAKMP for peer DRAYTEK encryption 3des-cbc authentication md5
IKE info: life time ( 28800 sec/ 0 kb)
[VPN-Status] 2008/08/25 18:47:51,910
IKE info: Phase-2 proposal failed: remote No 1, esp algorithm 3DES <-> local No 1, esp algorithm DES
IKE info: Phase-2 proposal failed: remote No 1, esp hmac HMAC_SHA <-> local No 1, esp hmac HMAC_MD5
IKE info: Phase-2 proposal failed: remote No 1, esp pfs group 0 <-> local No 1, esp pfs group 2
IKE info: Phase-2 proposal failed: remote No 1, esp algorithm 3DES <-> local No 2, esp algorithm DES
IKE info: Phase-2 proposal failed: remote No 1, esp pfs group 0 <-> local No 2, esp pfs group 2
IKE info: Phase-2 proposal failed: remote No 1, number of protos 1 <-> local No 3, number of protos 2
IKE info: Phase-2 proposal failed: remote No 1, esp hmac HMAC_SHA <-> local No 4, esp hmac HMAC_MD5
IKE info: Phase-2 proposal failed: remote No 1, esp pfs group 0 <-> local No 4, esp pfs group 2
IKE info: Phase-2 proposal failed: remote No 1, esp pfs group 0 <-> local No 5, esp pfs group 2
IKE info: Phase-2 remote proposal 1 failed for peer DRAYTEK
IKE log: 184751 Default message_negotiate_sa: no compatible proposal found
IKE log: 184751 Default dropped message from xxxx port 500 due to notification type NO_PROPOSAL_CHOSEN
IKE info: dropped message from peer DRAYTEK xxxx port 500 due to notification type NO_PROPOSAL_CHOSEN
[VPN-Status] 2008/08/25 18:47:51,920
VPN: Error: IPSEC-R-PFS-group-mismatch (0x3203) for DRAYTEK (xxxx)
[VPN-Status] 2008/08/25 18:47:51,920
VPN: selecting next remote gateway using strategy eFirst for DRAYTEK
=> no remote gateway selected
[VPN-Status] 2008/08/25 18:47:51,920
VPN: selecting first remote gateway using strategy eFirst for DRAYTEK
=> CurrIdx=0, IpStr=>xxxx<, IpAddr=xxxx, IpTtl=0s
[VPN-Status] 2008/08/25 18:47:51,920
VPN: installing ruleset for DRAYTEK (xxxx)
[VPN-Status] 2008/08/25 18:47:51,930
VPN: rulesets installed
[VPN-Status] 2008/08/25 18:47:54,950
IKE info: Phase-2 proposal failed: remote No 1, esp algorithm 3DES <-> local No 1, esp algorithm DES
IKE info: Phase-2 proposal failed: remote No 1, esp hmac HMAC_SHA <-> local No 1, esp hmac HMAC_MD5
IKE info: Phase-2 proposal failed: remote No 1, esp pfs group 0 <-> local No 1, esp pfs group 2
IKE info: Phase-2 proposal failed: remote No 1, esp algorithm 3DES <-> local No 2, esp algorithm DES
IKE info: Phase-2 proposal failed: remote No 1, esp pfs group 0 <-> local No 2, esp pfs group 2
IKE info: Phase-2 proposal failed: remote No 1, number of protos 1 <-> local No 3, number of protos 2
IKE info: Phase-2 proposal failed: remote No 1, esp hmac HMAC_SHA <-> local No 4, esp hmac HMAC_MD5
IKE info: Phase-2 proposal failed: remote No 1, esp pfs group 0 <-> local No 4, esp pfs group 2
IKE info: Phase-2 proposal failed: remote No 1, esp pfs group 0 <-> local No 5, esp pfs group 2
IKE info: Phase-2 remote proposal 1 failed for peer DRAYTEK
IKE log: 184754 Default message_negotiate_sa: no compatible proposal found
IKE log: 184754 Default dropped message from xxxx port 500 due to notification type NO_PROPOSAL_CHOSEN
IKE info: dropped message from peer DRAYTEK xxxx port 500 due to notification type NO_PROPOSAL_CHOSEN
[VPN-Status] 2008/08/25 18:47:54,950
VPN: Error: IPSEC-R-PFS-group-mismatch (0x3203) for DRAYTEK (xxxx)
[VPN-Status] 2008/08/25 18:47:54,950
VPN: selecting next remote gateway using strategy eFirst for DRAYTEK
=> no remote gateway selected
[VPN-Status] 2008/08/25 18:47:54,950
VPN: selecting first remote gateway using strategy eFirst for DRAYTEK
=> CurrIdx=0, IpStr=>xxxx<, IpAddr=xxxx, IpTtl=0s
[VPN-Status] 2008/08/25 18:47:54,950
VPN: installing ruleset for DRAYTEK (xxxx)
[VPN-Status] 2008/08/25 18:47:54,970
VPN: rulesets installed
[VPN-Status] 2008/08/25 18:48:00,970
IKE info: Phase-2 proposal failed: remote No 1, esp algorithm 3DES <-> local No 1, esp algorithm DES
IKE info: Phase-2 proposal failed: remote No 1, esp hmac HMAC_SHA <-> local No 1, esp hmac HMAC_MD5
IKE info: Phase-2 proposal failed: remote No 1, esp pfs group 0 <-> local No 1, esp pfs group 2
IKE info: Phase-2 proposal failed: remote No 1, esp algorithm 3DES <-> local No 2, esp algorithm DES
IKE info: Phase-2 proposal failed: remote No 1, esp pfs group 0 <-> local No 2, esp pfs group 2
IKE info: Phase-2 proposal failed: remote No 1, number of protos 1 <-> local No 3, number of protos 2
IKE info: Phase-2 proposal failed: remote No 1, esp hmac HMAC_SHA <-> local No 4, esp hmac HMAC_MD5
IKE info: Phase-2 proposal failed: remote No 1, esp pfs group 0 <-> local No 4, esp pfs group 2
IKE info: Phase-2 proposal failed: remote No 1, esp pfs group 0 <-> local No 5, esp pfs group 2
IKE info: Phase-2 remote proposal 1 failed for peer DRAYTEK
IKE log: 184800 Default message_negotiate_sa: no compatible proposal found
IKE log: 184800 Default dropped message from xxxx port 500 due to notification type NO_PROPOSAL_CHOSEN
IKE info: dropped message from peer DRAYTEK xxxx port 500 due to notification type NO_PROPOSAL_CHOSEN
[VPN-Status] 2008/08/25 18:48:00,980
VPN: Error: IPSEC-R-PFS-group-mismatch (0x3203) for DRAYTEK (xxxx)
[VPN-Status] 2008/08/25 18:48:00,980
VPN: selecting next remote gateway using strategy eFirst for DRAYTEK
=> no remote gateway selected
[VPN-Status] 2008/08/25 18:48:00,980
VPN: selecting first remote gateway using strategy eFirst for DRAYTEK
=> CurrIdx=0, IpStr=>xxxx<, IpAddr=xxxx, IpTtl=0s
[VPN-Status] 2008/08/25 18:48:00,980
VPN: installing ruleset for DRAYTEK (xxxx)
[VPN-Status] 2008/08/25 18:48:00,990
VPN: rulesets installed
[VPN-Status] 2008/08/25 18:48:03,980
IKE info: ISAKMP_NOTIFY_DPD_R_U_THERE sent for Phase-1 SA to peer DRAYTEK, sequence nr 0x68c95756
[VPN-Status] 2008/08/25 18:48:04,020
IKE info: NOTIFY received of type ISAKMP_NOTIFY_DPD_R_U_THERE_ACK for peer DRAYTEK Seq-Nr 0x68c95756, expected 0x68c95756
[VPN-Status] 2008/08/25 18:48:04,030
IKE info: Delete Notification received for Phase-1 SA isakmp-peer-DRAYTEK peer DRAYTEK cookies [e1f0f87cbedfef77 de6b4ce2ea2dc72d]
Sorry aber ich blick langsam nicht mehr durch. Versuche das jetzt schon den Ganzen Tag zum laufen zu bringen.