Tom's Guide | Tom's Hardware | Tom's Games
![]() |
![]() |
![]() |
I am trying to establish a VPN tunnel between a Linksys WRV200 and a computer running D-Link’s DS-601 remote client.
This is a copy of the 601’s Log:
7/6/2007 11:29:12 AM IPSDIALCHAN::start building connection
7/6/2007 11:29:12 AM NCPIKE-phase1:name(SMI) - outgoing connect request - main mode.
7/6/2007 11:29:12 AM XMIT_MSG1_MAIN - SMI
7/6/2007 11:29:12 AM RECV_MSG2_MAIN - SMI
7/6/2007 11:29:12 AM IKE phase I: Setting LifeTime to 28800 seconds
7/6/2007 11:29:12 AM SMI ->Support for NAT-T version - 9
7/6/2007 11:29:12 AM IPSDIAL->FINAL_TUNNEL_ENDPOINT:071.XXX.XXX.XXX
7/6/2007 11:29:12 AM XMIT_MSG3_MAIN - SMI
7/6/2007 11:29:13 AM RECV_MSG4_MAIN - SMI
7/6/2007 11:29:13 AM Turning on NATD mode - SMI - 3
7/6/2007 11:29:13 AM XMIT_MSG5_MAIN - SMI
7/6/2007 11:29:13 AM IKE(isakmp) - :Decrypt error(2)
7/6/2007 11:29:52 AM NCPIKE-phase2:name(SMI) - error - cleared by phase1
7/6/2007 11:29:52 AM IPSDIAL - disconnected from SMI on channel 1.This is from the WRV200:
000 "TunnelB": srcip=unset; dstip=unset; srcup=ipsec _updown; dstup=ipsec _updown;
000 "TunnelB": ike_life: 28800s; ipsec_life: 3600s; rekey_margin: 60s; rekey_fuzz: 100%; keyingtries: 5
000 "TunnelB": policy: PSK+ENCRYPT+TUNNEL; prio: 24,32; interface: eth0;
000 "TunnelB": dpd: action:restart; delay:30; timeout:120;
000 "TunnelB": newest ISAKMP SA: #0; newest IPsec SA: #0;
000 "TunnelB": IKE algorithms wanted: 7_128-1-2, flags=strict
000 "TunnelB": IKE algorithms found: 7_128-1_096-2,
000 "TunnelB": ESP algorithms wanted: 12_128-1, flags=strict
000 "TunnelB": ESP algorithms loaded: 12_128-1, flags=strict
000 "TunnelB"[5]: 10.10.85.0/24===10.10.10.10---10.10.10.1...71.XXX.XXX.XXX===?; unrouted; eroute owner: #0
000 "TunnelB"[5]: srcip=unset; dstip=unset; srcup=ipsec _updown; dstup=ipsec _updown;
000 "TunnelB"[5]: ike_life: 28800s; ipsec_life: 3600s; rekey_margin: 60s; rekey_fuzz: 100%; keyingtries: 5
000 "TunnelB"[5]: policy: PSK+ENCRYPT+TUNNEL; prio: 24,32; interface: eth0;
000 "TunnelB"[5]: dpd: action:restart; delay:30; timeout:120;
000 "TunnelB"[5]: newest ISAKMP SA: #0; newest IPsec SA: #0;
000 "TunnelB"[5]: IKE algorithms wanted: 7_128-1-2, flags=strict
000 "TunnelB"[5]: IKE algorithms found: 7_128-1_096-2,
000 "TunnelB"[5]: ESP algorithms wanted: 12_128-1, flags=strict
000 "TunnelB"[5]: ESP algorithms loaded: 12_128-1, flags=strict
000 #43: "TunnelB"[5] 71.XXX.XXX.XXX:500 STATE_MAIN_R2 (sent MR2, expecting MI3); EVENT_RETRANSMIT in 7s; lastdpd=-1s(seq in:0 out:0)Most of it is Greek (or should I say Geek) to me. I am hoping someone here can put me on the right track. Thanks!
Note: I XXX out the IP numerics for security.

First off, is the Linksys compatible with the DS-601 client?
--------
You'll want to search D-Link's documentation for an explanation of these log messages:7/6/2007 11:29:13 AM IKE(isakmp) - :Decrypt error(2)
7/6/2007 11:29:52 AM NCPIKE-phase2:name(SMI) - error - cleared by phase1
__________________________________
Also, check with Linksys' documentation, regarding this one:
000 #43: "TunnelB"[5] 71.XXX.XXX.XXX:500 STATE_MAIN_R2 (sent MR2, expecting MI3);______________________________________-
http://lists.openswan.org/pipermail...Are you running McAfee Security Center?

![]() |
![]() |
![]() |

This post is quite old and has been locked from receiving new replies. Please create a new posting instead.
| Ads by Google |