[strongSwan] Problem with IPsec/L2TP VPN!

A P sashka76 at hotmail.com
Sat Apr 6 16:21:43 CEST 2019


I have tried and tried and tried... With NetworkManager and totally manually, and I get the same error, with nothing much about it on the web... I get "no acceptable traffic selectors found"

Thank in advance for your help!


Here is the log:

initiating Main Mode IKE_SA myvpn[1] to 180.235.156.4
generating ID_PROT request 0 [ SA V V V V V ]
sending packet: from 192.168.1.2[500] to 180.235.156.4[500] (176 bytes)
received packet: from 180.235.156.4[500] to 192.168.1.2[500] (124 bytes)
parsed ID_PROT response 0 [ SA V V ]
received NAT-T (RFC 3947) vendor ID
received FRAGMENTATION vendor ID
selected proposal: IKE:3DES_CBC/HMAC_SHA1_96/PRF_HMAC_SHA1/MODP_1024
generating ID_PROT request 0 [ KE No NAT-D NAT-D ]
sending packet: from 192.168.1.2[500] to 180.235.156.4[500] (244 bytes)
received packet: from 180.235.156.4[500] to 192.168.1.2[500] (304 bytes)
parsed ID_PROT response 0 [ KE No V V V V NAT-D NAT-D ]
received Cisco Unity vendor ID
received XAuth vendor ID
received unknown vendor ID: 65:83:ea:08:11:06:75:21:d2:51:cd:44:16:26:47:73
received unknown vendor ID: 1f:07:f7:0e:aa:65:14:d3:b0:fa:96:54:2a:50:01:00
local host is behind NAT, sending keep alives
generating ID_PROT request 0 [ ID HASH N(INITIAL_CONTACT) ]
sending packet: from 192.168.1.2[4500] to 180.235.156.4[4500] (100 bytes)
received packet: from 180.235.156.4[4500] to 192.168.1.2[4500] (84 bytes)
parsed ID_PROT response 0 [ ID HASH V ]
received DPD vendor ID
IKE_SA myvpn[1] established between 192.168.1.2[192.168.1.2]...180.235.156.4[180.235.156.4]
scheduling reauthentication in 3390s
maximum IKE_SA lifetime 3570s
generating QUICK_MODE request 3689125877 [ HASH SA No ID ID NAT-OA NAT-OA ]
sending packet: from 192.168.1.2[4500] to 180.235.156.4[4500] (188 bytes)
received packet: from 180.235.156.4[4500] to 192.168.1.2[4500] (204 bytes)
parsed QUICK_MODE response 3689125877 [ HASH SA No ID ID N((24576)) NAT-OA NAT-OA ]
selected proposal: ESP:3DES_CBC/HMAC_MD5_96/NO_EXT_SEQ
no acceptable traffic selectors found
establishing connection 'myvpn' failed
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.strongswan.org/pipermail/users/attachments/20190406/311db203/attachment.html>


More information about the Users mailing list