Hi all, I'm totally new and dumb to this NetScreen stuff,
Need urgent help SOS to my below problem :
My customer NetScreen Firewall and VPN is configured by ex-administrator. Now everything dumped to me, a total newbabie, to this Netscreen.
My customer is having problem using the VPN. Below is the log:
4-24: 15:52:32.407 SafeNet VPN Client Version 10.3.3 (Build 4).
4-24: 15:52:34.510 No Interfaces detected.
4-24: 15:52:34.540 Filter table loaded.
4-24: 15:52:45.025 Interface added: 192.168.1.103/255.255.255.0 on LAN "Intel(R) PRO/Wireless LAN 2100 3B Mini PCI Adapter".
4-24: 15:55:30.623 Filter table loaded.
4-24: 15:55:41.309
4-24: 15:55:43.892 My Connections\XX VPN Tunnel - Initiating IKE Phase 1 (IP ADDR=xxx.xxx.xxx.xx)
4-24: 15:55:45.104 My Connections\XX VPN Tunnel - SENDING>>>> ISAKMP OAK AG (SA, KE, NON, ID, VID 6x)
4-24: 15:55:45.244 My Connections\XX VPN Tunnel - RECEIVED<<< ISAKMP OAK AG (SA, VID 3x, KE, NON, ID, HASH)
4-24: 15:55:45.414 My Connections\XX VPN Tunnel - SENDING>>>> ISAKMP OAK AG *(HASH, NOTIFY:STATUS_REPLAY_STATUS, NOTIFY:STATUS_INITIAL_CONTACT)
4-24: 15:55:45.424 My Connections\XX VPN Tunnel - Established IKE SA
4-24: 15:55:45.424 MY COOKIE f6 91 f3 96 82 69 ca 44
4-24: 15:55:45.424 HIS COOKIE d0 fe b0 3 3e ef b7 99
4-24: 15:55:45.475 My Connections\XX VPN Tunnel - RECEIVED<<< ISAKMP OAK TRANS *(HASH, ATTR)
4-24: 15:55:51.633 My Connections\XX VPN Tunnel - SENDING>>>> ISAKMP OAK TRANS *(HASH, ATTR)
4-24: 15:55:51.653 My Connections\XX VPN Tunnel - RECEIVED<<< ISAKMP OAK TRANS *(HASH, ATTR)
4-24: 15:55:51.653 My Connections\XX VPN Tunnel - IKE Extended Authentication successful.
4-24: 15:55:51.663 My Connections\XX VPN Tunnel - SENDING>>>> ISAKMP OAK TRANS *(HASH, ATTR)
4-24: 15:55:51.764 My Connections\XX VPN Tunnel - Initiating IKE Phase 2 with Client IDs (message id: 8C7A08BA)
4-24: 15:55:51.764 Initiator = IP ADDR=0.0.0.0, prot = 0 port = 0
4-24: 15:55:51.764 Responder = IP SUBNET/MASK=172.xx.xx.0/255.255.255.0, prot = 0 port = 0
4-24: 15:55:51.764 My Connections\XX VPN Tunnel - SENDING>>>> ISAKMP OAK QM *(HASH, SA, NON, ID 2x)
4-24: 15:55:51.804 My Connections\XX VPN Tunnel - RECEIVED<<< ISAKMP OAK QM *(HASH, SA, NON, ID 2x, NOTIFY:STATUS_RESP_LIFETIME)
4-24: 15:55:51.804 Cannot match Local Responder's Phase 2 ID IP SUBNET/MASK=172.xx.xx.0/255.255.255.0
4-24: 15:55:51.804 My Connections\XX VPN Tunnel - SENDING>>>> ISAKMP OAK INFO *(HASH, NOTIFY:INVALID_ID_INFO)
4-24: 15:55:51.814 My Connections\XX VPN Tunnel - Error validating Proxy IDs.
4-24: 15:55:55.889 My Connections\XX VPN Tunnel - RECEIVED<<< ISAKMP OAK QM *(HASH, 107)
4-24: 15:55:55.889 My Connections\XX VPN Tunnel - Received malformed message or negotiation no longer active (message id: 8C7A08BA)
4-24: 15:55:59.875 My Connections\XX VPN Tunnel - RECEIVED<<< ISAKMP OAK QM *(HASH, 107)
4-24: 15:55:59.875 My Connections\XX VPN Tunnel - Received malformed message or negotiation no longer active (message id: 8C7A08BA)
4-24: 15:56:03.871 My Connections\XX VPN Tunnel - RECEIVED<<< ISAKMP OAK QM *(HASH, 107)
4-24: 15:56:03.871 My Connections\XX VPN Tunnel - Received malformed message or negotiation no longer active (message id: 8C7A08BA)
4-24: 15:56:07.867 My Connections\XX VPN Tunnel - RECEIVED<<< ISAKMP OAK QM *(HASH, 107)
4-24: 15:56:07.867 My Connections\XX VPN Tunnel - Received malformed message or negotiation no longer active (message id: 8C7A08BA)
4-24: 15:56:11.872 My Connections\XX VPN Tunnel - RECEIVED<<< ISAKMP OAK QM *(HASH, 107)
4-24: 15:56:11.872 Connections\XX VPN Tunnel - Received malformed message or negotiation no longer active (message id: 8C7A08BA)
4-24: 15:56:15.858 Connections\XX VPN Tunnel - RECEIVED<<< ISAKMP OAK QM *(HASH, 107)
4-24: 15:56:15.858 Connections\XX VPN Tunnel - Received malformed message or negotiation no longer active (message id: 8C7A08BA)
4-24: 15:56:19.844 Connections\XX VPN Tunnel - RECEIVED<<< ISAKMP OAK QM *(HASH, 107)
4-24: 15:56:19.844 My Connections\XX VPN Tunnel - Received malformed message or negotiation no longer active (message id: 8C7A08BA)
4-24: 15:56:23.840 My Connections\XX VPN Tunnel - RECEIVED<<< ISAKMP OAK INFO *(HASH, DEL)
4-24: 15:57:16.886 My Connections\XX VPN Tunnel - RECEIVED<<< ISAKMP OAK INFO *(HASH, DEL)
4-24: 15:57:16.886 My Connections\XX VPN Tunnel - Deleting IKE SA (IP ADDR=xxx.xxx.xxx.xx)
4-24: 15:57:16.886 MY COOKIE f6 91 f3 96 82 69 ca 44
4-24: 15:57:16.886 HIS COOKIE d0 fe b0 3 3e ef b7 99
Need urgent help SOS to my below problem :
My customer NetScreen Firewall and VPN is configured by ex-administrator. Now everything dumped to me, a total newbabie, to this Netscreen.
My customer is having problem using the VPN. Below is the log:
4-24: 15:52:32.407 SafeNet VPN Client Version 10.3.3 (Build 4).
4-24: 15:52:34.510 No Interfaces detected.
4-24: 15:52:34.540 Filter table loaded.
4-24: 15:52:45.025 Interface added: 192.168.1.103/255.255.255.0 on LAN "Intel(R) PRO/Wireless LAN 2100 3B Mini PCI Adapter".
4-24: 15:55:30.623 Filter table loaded.
4-24: 15:55:41.309
4-24: 15:55:43.892 My Connections\XX VPN Tunnel - Initiating IKE Phase 1 (IP ADDR=xxx.xxx.xxx.xx)
4-24: 15:55:45.104 My Connections\XX VPN Tunnel - SENDING>>>> ISAKMP OAK AG (SA, KE, NON, ID, VID 6x)
4-24: 15:55:45.244 My Connections\XX VPN Tunnel - RECEIVED<<< ISAKMP OAK AG (SA, VID 3x, KE, NON, ID, HASH)
4-24: 15:55:45.414 My Connections\XX VPN Tunnel - SENDING>>>> ISAKMP OAK AG *(HASH, NOTIFY:STATUS_REPLAY_STATUS, NOTIFY:STATUS_INITIAL_CONTACT)
4-24: 15:55:45.424 My Connections\XX VPN Tunnel - Established IKE SA
4-24: 15:55:45.424 MY COOKIE f6 91 f3 96 82 69 ca 44
4-24: 15:55:45.424 HIS COOKIE d0 fe b0 3 3e ef b7 99
4-24: 15:55:45.475 My Connections\XX VPN Tunnel - RECEIVED<<< ISAKMP OAK TRANS *(HASH, ATTR)
4-24: 15:55:51.633 My Connections\XX VPN Tunnel - SENDING>>>> ISAKMP OAK TRANS *(HASH, ATTR)
4-24: 15:55:51.653 My Connections\XX VPN Tunnel - RECEIVED<<< ISAKMP OAK TRANS *(HASH, ATTR)
4-24: 15:55:51.653 My Connections\XX VPN Tunnel - IKE Extended Authentication successful.
4-24: 15:55:51.663 My Connections\XX VPN Tunnel - SENDING>>>> ISAKMP OAK TRANS *(HASH, ATTR)
4-24: 15:55:51.764 My Connections\XX VPN Tunnel - Initiating IKE Phase 2 with Client IDs (message id: 8C7A08BA)
4-24: 15:55:51.764 Initiator = IP ADDR=0.0.0.0, prot = 0 port = 0
4-24: 15:55:51.764 Responder = IP SUBNET/MASK=172.xx.xx.0/255.255.255.0, prot = 0 port = 0
4-24: 15:55:51.764 My Connections\XX VPN Tunnel - SENDING>>>> ISAKMP OAK QM *(HASH, SA, NON, ID 2x)
4-24: 15:55:51.804 My Connections\XX VPN Tunnel - RECEIVED<<< ISAKMP OAK QM *(HASH, SA, NON, ID 2x, NOTIFY:STATUS_RESP_LIFETIME)
4-24: 15:55:51.804 Cannot match Local Responder's Phase 2 ID IP SUBNET/MASK=172.xx.xx.0/255.255.255.0
4-24: 15:55:51.804 My Connections\XX VPN Tunnel - SENDING>>>> ISAKMP OAK INFO *(HASH, NOTIFY:INVALID_ID_INFO)
4-24: 15:55:51.814 My Connections\XX VPN Tunnel - Error validating Proxy IDs.
4-24: 15:55:55.889 My Connections\XX VPN Tunnel - RECEIVED<<< ISAKMP OAK QM *(HASH, 107)
4-24: 15:55:55.889 My Connections\XX VPN Tunnel - Received malformed message or negotiation no longer active (message id: 8C7A08BA)
4-24: 15:55:59.875 My Connections\XX VPN Tunnel - RECEIVED<<< ISAKMP OAK QM *(HASH, 107)
4-24: 15:55:59.875 My Connections\XX VPN Tunnel - Received malformed message or negotiation no longer active (message id: 8C7A08BA)
4-24: 15:56:03.871 My Connections\XX VPN Tunnel - RECEIVED<<< ISAKMP OAK QM *(HASH, 107)
4-24: 15:56:03.871 My Connections\XX VPN Tunnel - Received malformed message or negotiation no longer active (message id: 8C7A08BA)
4-24: 15:56:07.867 My Connections\XX VPN Tunnel - RECEIVED<<< ISAKMP OAK QM *(HASH, 107)
4-24: 15:56:07.867 My Connections\XX VPN Tunnel - Received malformed message or negotiation no longer active (message id: 8C7A08BA)
4-24: 15:56:11.872 My Connections\XX VPN Tunnel - RECEIVED<<< ISAKMP OAK QM *(HASH, 107)
4-24: 15:56:11.872 Connections\XX VPN Tunnel - Received malformed message or negotiation no longer active (message id: 8C7A08BA)
4-24: 15:56:15.858 Connections\XX VPN Tunnel - RECEIVED<<< ISAKMP OAK QM *(HASH, 107)
4-24: 15:56:15.858 Connections\XX VPN Tunnel - Received malformed message or negotiation no longer active (message id: 8C7A08BA)
4-24: 15:56:19.844 Connections\XX VPN Tunnel - RECEIVED<<< ISAKMP OAK QM *(HASH, 107)
4-24: 15:56:19.844 My Connections\XX VPN Tunnel - Received malformed message or negotiation no longer active (message id: 8C7A08BA)
4-24: 15:56:23.840 My Connections\XX VPN Tunnel - RECEIVED<<< ISAKMP OAK INFO *(HASH, DEL)
4-24: 15:57:16.886 My Connections\XX VPN Tunnel - RECEIVED<<< ISAKMP OAK INFO *(HASH, DEL)
4-24: 15:57:16.886 My Connections\XX VPN Tunnel - Deleting IKE SA (IP ADDR=xxx.xxx.xxx.xx)
4-24: 15:57:16.886 MY COOKIE f6 91 f3 96 82 69 ca 44
4-24: 15:57:16.886 HIS COOKIE d0 fe b0 3 3e ef b7 99