Hi,

I have just finished configuring a VPN connection against a Juniper with version 5.4 and the data on the link is accurate and everything worked fine.
If you can send some print screens of the configs, Juniper and Shrew Client I can try to help you (just delete sensitive info).

Regards,

Rui Cordeiro

Igor Birman wrote:
I am trying to connect to an SSG5.  I followed the guide:

http://www.shrew.net/support/wiki/HowtoJuniperSsg

but the client stops at "bringing up tunnel" and then hangs there forever.  On the server, I have the following messages:

2010-06-24 07:47:03    info    IKE<71.191.197.230>: Received initial contact notification and removed Phase 1 SAs.
2010-06-24 07:47:03    info    IKE<71.191.197.230>: Received initial contact notification and removed Phase 2 SAs.
2010-06-24 07:47:03    info    IKE<71.191.197.230>: Received a notification message for DOI <1> <24578> <INITIAL-CONTACT>.
2010-06-24 07:47:03    info    IKE<71.191.197.230> Phase 1: Completed Aggressive mode negotiations with a <28800>-second lifetime.
2010-06-24 07:47:03    info    IKE<71.191.197.230> Phase 1: Completed for user <Test>.
2010-06-24 07:47:03    info    IKE<71.191.197.230> Phase 1: IKE responder has detected NAT in front of the remote device.
2010-06-24 07:47:03    info    IKE<71.191.197.230> Phase 1: IKE responder has detected NAT in front of the local device.
2010-06-24 07:47:03    info    IKE<71.191.197.230> Phase 1: Responder starts AGGRESSIVE mode negotiations.

What am I missing?

Thanks,
Igor

_______________________________________________ vpn-help mailing list [email protected] http://lists.shrew.net/mailman/listinfo/vpn-help


_______________________________________________
vpn-help mailing list
[email protected]
http://lists.shrew.net/mailman/listinfo/vpn-help

Reply via email to