
daniel.krenn at student
Feb 22, 2009, 12:45 AM
Post #1 of 1
(918 views)
Permalink
|
|
vpnc 0.5.1 -- connection lost - error: Disabled Privacy Extensions
|
|
Reply for http://lists.unix-ag.uni-kl.de/pipermail/vpnc-devel/2009-January/002867.html I ran vpnc in debug mode and in foreground. I hope the debug messages below will help. Regards, Daniel daniel [at] debia:~$ sudo vpnc vcgraz_debug vpnc version 0.5.1 IKE SA selected psk+xauth-3des-md5 NAT status: no NAT-T VID seen Enter Username and Password. got address 193.171.240.118 IPSEC SA selected 3des-md5 VPNC started in foreground... IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 IPSEC SA selected 3des-md5 ---!!!!!!!!! entering phase2_fatal !!!!!!!!!--- vpnc: quick mode response rejected: (ISAKMP_N_INVALID_PAYLOAD_TYPE)(1) this means the concentrator did not like what we had to offer. Possible reasons are: * concentrator configured to require a firewall this locks out even Cisco clients on any platform expect windows which is an obvious security improvment. There is no workaround (yet). * concentrator configured to require IP compression this is not yet supported by vpnc. Note: the Cisco Concentrator Documentation recommends against using compression, expect on low-bandwith (read: ISDN) links, because it uses much CPU-resources on the concentrator daniel [at] debia:~$ sudo vpnc vcgraz_debug vpnc version 0.5.1 IKE SA selected psk+xauth-3des-md5 NAT status: no NAT-T VID seen Enter Username and Password. got address 193.171.240.84 Usage: ip link set DEVICE { up | down | arp { on | off } | dynamic { on | off } | multicast { on | off } | allmulticast { on | off } | promisc { on | off } | trailers { on | off } | txqueuelen PACKETS | name NEWNAME | address LLADDR | broadcast LLADDR | mtu MTU } netns PID } ip link show [ DEVICE ] SIOCSIFMTU: Das Argument ist ungültig RTNETLINK answers: File exists IPSEC SA selected 3des-md5 VPNC started in foreground... _______________________________________________ vpnc-devel mailing list vpnc-devel [at] unix-ag https://lists.unix-ag.uni-kl.de/mailman/listinfo/vpnc-devel http://www.unix-ag.uni-kl.de/~massar/vpnc/
|