|
Hello
Can anyone tell me what I need to fix? I don't
know if this is relevant, but I made the mistake of double clicking the *.p12
file before installing a new certificate properly through the mmc.
See below the oakley.log from the XP
machine.
Thanks
Tim
8-04: 22:37:08:0:c34 Phase 1 SA
accepted: transform=1
8-04: 22:37:08:0:c34 SA - Oakley proposal accepted 8-04: 22:37:08:0:c34 constructing ISAKMP Header 8-04: 22:37:08:46:c34 constructing KE 8-04: 22:37:08:46:c34 constructing NONCE (ISAKMP) 8-04: 22:37:08:46:c34 8-04: 22:37:08:46:c34 Sending: SA = 0x000C7F70 to 213.x.x.x:Type 2 8-04: 22:37:08:46:c34 ISAKMP Header: (V1.0), len = 184 8-04: 22:37:08:46:c34 I-COOKIE 6cef0a6446350f1d 8-04: 22:37:08:46:c34 R-COOKIE 04113e49beb4009b 8-04: 22:37:08:46:c34 exchange: Oakley Main Mode 8-04: 22:37:08:46:c34 flags: 0 8-04: 22:37:08:46:c34 next payload: KE 8-04: 22:37:08:46:c34 message ID: 00000000 8-04: 22:37:08:109:c34 8-04: 22:37:08:109:c34 Receive: (get) SA = 0x000c7f70 from 213.x.x.x 8-04: 22:37:08:109:c34 ISAKMP Header: (V1.0), len = 188 8-04: 22:37:08:109:c34 I-COOKIE 6cef0a6446350f1d 8-04: 22:37:08:109:c34 R-COOKIE 04113e49beb4009b 8-04: 22:37:08:109:c34 exchange: Oakley Main Mode 8-04: 22:37:08:109:c34 flags: 0 8-04: 22:37:08:109:c34 next payload: KE 8-04: 22:37:08:109:c34 message ID: 00000000 8-04: 22:37:08:109:c34 processing payload KE 8-04: 22:37:08:109:c34 processing payload NONCE 8-04: 22:37:08:109:c34 processing payload CRP 8-04: 22:37:08:109:c34 constructing ISAKMP Header 8-04: 22:37:08:109:c34 constructing ID 8-04: 22:37:08:125:c34 Received no valid CRPs. Using all configured 8-04: 22:37:08:125:c34 Looking for IPSec only cert 8-04: 22:37:08:203:c34 failed to get chain 80092004 8-04: 22:37:08:203:c34 Received no valid CRPs. Using all configured 8-04: 22:37:08:203:c34 Looking for any cert 8-04: 22:37:08:203:c34 failed to get chain 80092004 8-04: 22:37:08:203:c34 ProcessFailure: sa:000C7F70 centry:00000000 status:35ee 8-04: 22:37:08:203:c34 isadb_set_status sa:000C7F70 centry:00000000 status 35ee 8-04: 22:37:08:218:c34 Key Exchange Mode (Main Mode) 8-04: 22:37:08:218:c34 Source IP Address 80.x.x.x Source IP Address Mask 255.255.255.255
Destination IP Address 213.x.x.x
Destination IP Address Mask 255.255.255.255
Protocol 0
Source Port 0
Destination Port 0
IKE Local Addr
IKE Peer Addr
8-04: 22:37:08:218:c34 Certificate based Identity. Peer IP Address: 213.210.52.122
8-04: 22:37:08:218:c34 Me 8-04: 22:37:08:218:c34 IKE failed to find valid machine certificate |
- [Users] Roadwarrior behind NAT to FreeS/WAN The Sampsons
- [Users] Roadwarrior behind NAT to FreeS/WAN Ollie Gallardo
