Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Mike Lewis on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Netscreen Remote problem

Status
Not open for further replies.

jamesjames1

Technical User
Jun 18, 2004
81
0
0
GB
I have a clinet connecting to our VPN via Dialup. He is getting some errors which are stopping him connecting.

I have reset the Shared key but the client is still getting errors, can anyone point me in the right direction: Here is the log

4-04: 22:11:07.328 SafeNet VPN Client Version 10.3.5 (Build 6).
4-04: 22:11:08.546 No Interfaces detected.
4-04: 22:11:08.687 Filter table loaded.
4-04: 22:11:08.703 This is a version of NetScreen-Remote.
4-04: 22:11:29.109 Interface added: 192.168.1.33/255.255.255.0 on LAN "Realtek RTL8169/8110 Family Gigabit Ethernet NIC".
4-04: 22:13:06.406 This is a version of NetScreen-Remote.
4-04: 22:13:06.484 My Connections\Fast - Preshared Key has 0 length
4-04: 22:13:06.687 Filter table loaded.
4-04: 22:13:38.375 This is a version of NetScreen-Remote.
4-04: 22:13:38.437 My Connections\Fast - Preshared Key has 0 length
4-04: 22:13:38.656 Filter table loaded.
4-04: 22:14:40.062
4-04: 22:14:40.078 My Connections\Fast - Initiating IKE Phase 1 (IP ADDR=193.108.169.48)
4-04: 22:14:40.203 My Connections\Fast - SENDING>>>> ISAKMP OAK AG (SA, KE, NON, ID, VID 6x)
4-04: 22:14:40.312 My Connections\Fast - RECEIVED<<< ISAKMP OAK AG (SA, VID 2x, KE, NON, ID, HASH)
4-04: 22:14:40.375 There is no pre-shared key for this Policy Entry
4-04: 22:14:40.375 Failed to compute keys
4-04: 22:14:40.375 My Connections\Fast - Discarding IKE SA negotiation
4-04: 22:14:40.375 MY COOKIE 56 37 a1 1c 55 19 b0 35
4-04: 22:14:40.375 HIS COOKIE fb 58 41 4f 88 37 2d d
4-04: 22:14:44.250 My Connections\Fast - RECEIVED<<< ISAKMP OAK AG (SA, VID 2x, KE, NON, ID, HASH)
4-04: 22:14:44.250 My Connections\Fast - Received message for non-active SA
4-04: 22:14:48.250 My Connections\Fast - RECEIVED<<< ISAKMP OAK AG (SA, VID 2x, KE, NON, ID, HASH)
4-04: 22:14:48.250 My Connections\Fast - Received message for non-active SA
4-04: 22:14:52.250 My Connections\Fast - RECEIVED<<< ISAKMP OAK AG (SA, VID 2x, KE, NON, ID, HASH)
4-04: 22:14:52.250 My Connections\Fast - Received message for non-active SA
4-04: 22:14:56.250 My Connections\Fast - RECEIVED<<< ISAKMP OAK AG (SA, VID 2x, KE, NON, ID, HASH)
4-04: 22:14:56.250 My Connections\Fast - Received message for non-active SA
4-04: 22:15:00.250 My Connections\Fast - RECEIVED<<< ISAKMP OAK AG (SA, VID 2x, KE, NON, ID, HASH)
4-04: 22:15:00.250 My Connections\Fast - Received message for non-active SA
4-04: 22:15:04.250 My Connections\Fast - RECEIVED<<< ISAKMP OAK AG (SA, VID 2x, KE, NON, ID, HASH)
4-04: 22:15:04.250 My Connections\Fast - Received message for non-active SA
4-04: 22:15:08.265 My Connections\Fast - RECEIVED<<< ISAKMP OAK AG (SA, VID 2x, KE, NON, ID, HASH)
4-04: 22:15:08.265 My Connections\Fast - Received message for non-active SA
4-04: 22:15:12.265 My Connections\Fast - RECEIVED<<< ISAKMP OAK AG (SA, VID 2x, KE, NON, ID, HASH)
4-04: 22:15:12.265 My Connections\Fast - Received message for non-active SA
4-04: 22:15:16.265 My Connections\Fast - RECEIVED<<< ISAKMP OAK AG (SA, VID 2x, KE, NON, ID, HASH)
4-04: 22:15:16.265 My Connections\Fast - Received message for non-active SA
4-04: 22:15:20.265 My Connections\Fast - RECEIVED<<< ISAKMP OAK AG (SA, VID 2x, KE, NON, ID, HASH)
4-04: 22:15:20.265 My Connections\Fast - Received message for non-active SA
4-04: 22:15:24.265 My Connections\Fast - RECEIVED<<< ISAKMP OAK AG (SA, VID 2x, KE, NON, ID, HASH)
4-04: 22:15:24.265 My Connections\Fast - Received message for non-active SA
 
What is this:

There is no pre-shared key for this Policy Entry

and also: what is the log on the server?
 
What does,

There is no pre-shared key for this Policy Entry mean.

There is definately a preshared key for the application configured.

the server logs have been over written - any ideas?
 
I have a problemwith my netscreen 100 firewall. Its a hub firewall running quite a few VPNs to other companies.
While I was adding a new user via the the web GUI it timed out and now I cant log in at all. It seems the web interface has stopped working. I read somewhere that I might have max'd the 30 login sessions available.

Is there a way to reset the logins orget logged in some how. I would rather not reboot but will if I have to.

If I do reboot with all the VPNS come back up or will there be more problems....

Cheers

james
 
I have a problemwith my netscreen 100 firewall. Its a hub firewall running quite a few VPNs to other companies.
While I was adding a new user via the the web GUI it timed out and now I cant log in at all. It seems the web interface has stopped working. I read somewhere that I might have max'd the 30 login sessions available.

Is there a way to reset the logins orget logged in some how. I would rather not reboot but will if I have to.

If I do reboot with all the VPNS come back up or will there be more problems....

Cheers

james
 
Did you try logging in via command line, (telnet, hyperterminal etc)?
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top