Netgear SRX5308 SRX5308 Reference Manual - Page 352
Table C-21. System Logs: IPsec VPN Tunnel, Client Policy, Tunnel Establishment
UPC - 606449065145
View all Netgear SRX5308 manuals
Add to My Manuals
Save this manual to your list of manuals |
Page 352 highlights
ProSafe Gigabit Quad WAN SSL VPN Firewall SRX5308 Reference Manual Table C-21. System Logs: IPsec VPN Tunnel, Client Policy, Tunnel Establishment Messages 1 and 2 2000 Jan 1 02:17:05 [SRX5308] [IKE] Adding IKE configuration with identifier "clientpol1"_ 2000 Jan 1 02:17:05 [SRX5308] [IKE] Adding IPSec configuration with identifier "clientpol1"_ Message 3 2000 Jan 1 02:23:53 [SRX5308] [IKE] Remote configuration for identifier "srx_remote1.com" found_ Message 4 2000 Jan 1 02:23:53 [SRX5308] [IKE] Received request for new phase 1 negotiation: 20.0.0.2[500]20.0.0.1[500]_ Message 5 2000 Jan 1 02:23:53 [SRX5308] [IKE] Beginning Aggressive mode._ Messages 6 through 18 2000 Jan 1 02:23:53 [SRX5308] [IKE] Received unknown Vendor ID_ 2000 Jan 1 02:23:53 [SRX5308] [IKE] Received Vendor ID: DPD_ 2000 Jan 1 02:23:53 [SRX5308] [IKE] DPD is Enabled_ 2000 Jan 1 02:23:53 [SRX5308] [IKE] Received Vendor ID: draft-ietf-ipsraisakmp- xauth-06.txt_ 2000 Jan 1 02:23:53 [SRX5308] [IKE] Received unknown Vendor ID_ 2000 Jan 1 02:23:53 [SRX5308] [IKE] Received Vendor ID: draft-ietf-ipsecnat- t-ike-02__ 2000 Jan 1 02:23:53 [SRX5308] [IKE] For 20.0.0.1[500], Selected NAT-T version: draft-ietf-ipsec-nat-t-ike-02_ 2000 Jan 1 02:23:53 [SRX5308] [IKE] Setting DPD Vendor ID_ 2000 Jan 1 02:23:53 [SRX5308] [IKE] NAT-D payload matches for 20.0.0.2[500]_ 2000 Jan 1 02:23:53 [SRX5308] [IKE] NAT-D payload matches for 20.0.0.1[500]_ 2000 Jan 1 02:23:53 [SRX5308] [IKE] Ignore REPLAY-STATUS notification from 20.0.0.1[500]._ 2000 Jan 1 02:23:53 [SRX5308] [IKE] Ignore INITIAL-CONTACT notification from 20.0.0.1[500] because it is only accepted after phase 1._ 2000 Jan 1 02:23:53 [SRX5308] [IKE] NAT not detected _ Message 19 and 20 2000 Jan 1 02:23:53 [SRX5308] [IKE] ISAKMP-SA established for 20.0.0.2[500]- 20.0.0.1[500] with spi:da1f2efbf0635943:4eb6fae677b2e4f4_ 2000 Jan 1 02:23:53 [SRX5308] [IKE] Sending Informational Exchange: notify payload[INITIAL-CONTACT]_ Messages 21 and 22 2000 Jan 1 02:23:53 [SRX5308] [IKE] Responding to new phase 2 negotiation: 20.0.0.2[0]20.0.0.1[0]_ 2000 Jan 1 02:23:53 [SRX5308] [IKE] Using IPsec SA configuration: 192.168.11.0/ 240.0.0.0/0 from srx_remote1.com_ Message 23 2000 Jan 1 02:23:53 [SRX5308] [IKE] No policy found, generating the policy : 20.0.0.1/32[0] 192.168.11.2/32[0] proto=any dir=in_ Messages 24 and 25 2000 Jan 1 02:23:53 [SRX5308] [IKE] IPsec-SA established: ESP/Tunnel 20.0.0.1- >20.0.0.2 with spi=248146076(0xeca689c)_ 2000 Jan 1 02:23:53 [SRX5308] [IKE] IPsec-SA established: ESP/Tunnel 20.0.0.2- >20.0.0.1 with spi=3000608295(0xb2d9a627)_ C-14 v1.0, April 2010 System Logs and Error Messages