hi guys, i.m having problems establishing a vpn between a 2610 ios c2600-ik9o3s-mz.122-10a and a 3620 ios c3620-ik9o3s6-mz.123-9a. copied below are the debug ipsec/isakmp outputs.
i,m a relative newby so be nice, but it seems unusual to me that i only get debug info from the initiating router, from either direction.
here's the debug and thanks in advance for your help..
fstpres#
*Mar 1 16:30:45.267: IPSEC(sa_request): ,
(key eng. msg.) OUTBOUND local= 64.104.56.122, remote= 64.104.56.86,
local_proxy= 10.10.20.0/255.255.255.0/0/0 (type=4),
remote_proxy= 10.10.200.0/255.255.255.0/0/0 (type=4),
protocol= ESP, transform= esp-des (Tunnel),
lifedur= 3600s and 4608000kb,
spi= 0x10D9C8F0(282708208), conn_id= 0, keysize= 0, flags= 0x400A
*Mar 1 16:30:45.271: ISAKMP: received ke message (1/1)
*Mar 1 16:30:45.271: ISAKMP (0:0): SA request profile is (NULL)
*Mar 1 16:30:45.271: ISAKMP: local port 500, remote port 500
*Mar 1 16:30:45.271: ISAKMP: set new node 0 to QM_IDLE
*Mar 1 16:30:45.275: ISAKMP: insert sa successfully sa = 623DB004
*Mar 1 16:30:45.275: ISAKMP (0:1): Can not start Aggressive mode, trying Main mode.
*Mar 1 16:30:45.275: ISAKMP: Looking for a matching key for 64.104.56.86 in default : success
*Mar 1 16:30:45.275: ISAKMP (0:1): found peer pre-shared key matching 64.104.56.86
*Mar 1 16:30:45.275: ISAKMP (0:1): constructed NAT-T vendor-07 ID
*Mar 1 16:30:45.275: ISAKMP (0:1): constructed NAT-T vendor-03 ID
*Mar 1 16:30:45.275: ISAKMP (0:1): constructed NAT-T vendor-02 ID
*Mar 1 16:30:45.275: ISAKMP (0:1): Input = IKE_MESG_FROM_IPSEC, IKE_SA_REQ_MM
*Mar 1 16:30:45.279: ISAKMP (0:1): Old State = IKE_READY New State = IKE_I_MM1
*Mar 1 16:30:45.279: ISAKMP (0:1): beginning Main Mode exchange
*Mar 1 16:30:45.279: ISAKMP (0:1): sending packet to 64.104.56.86 my_port 500 peer_port 500 (I) MM_
NO_STATE
*Mar 1 16:30:55.279: ISAKMP (0:1): retransmitting phase 1 MM_NO_STATE...
*Mar 1 16:30:55.279: ISAKMP (0:1): incrementing error counter on sa: retransmit phase 1
*Mar 1 16:30:55.279: ISAKMP (0:1): retransmitting phase 1 MM_NO_STATE
*Mar 1 16:30:55.279: ISAKMP (0:1): sending packet to 64.104.56.86 my_port 500 peer_port 500 (I) MM_
NO_STATE
*Mar 1 16:31:05.279: ISAKMP (0:1): retransmitting phase 1 MM_NO_STATE...
*Mar 1 16:31:05.279: ISAKMP (0:1): incrementing error counter on sa: retransmit phase 1
*Mar 1 16:31:05.279: ISAKMP (0:1): retransmitting phase 1 MM_NO_STATE
*Mar 1 16:31:05.279: ISAKMP (0:1): sending packet to 64.104.56.86 my_port 500 peer_port 500 (I) MM_
NO_STATE
*Mar 1 16:31:15.267: IPSEC(key_engine): request timer fired: count = 1,
(identity) local= 64.104.56.122, remote= 64.104.56.86,
local_proxy= 10.10.20.0/255.255.255.0/0/0 (type=4),
remote_proxy= 10.10.200.0/255.255.255.0/0/0 (type=4)
*Mar 1 16:31:15.267: IPSEC(sa_request): ,
(key eng. msg.) OUTBOUND local= 64.104.56.122, remote= 64.104.56.86,
local_proxy= 10.10.20.0/255.255.255.0/0/0 (type=4),
remote_proxy= 10.10.200.0/255.255.255.0/0/0 (type=4),
protocol= ESP, transform= esp-des (Tunnel),
lifedur= 3600s and 4608000kb,
spi= 0x90551986(2421496198), conn_id= 0, keysize= 0, flags= 0x400A
*Mar 1 16:31:15.267: ISAKMP: received ke message (1/1)
*Mar 1 16:31:15.271: ISAKMP: set new node 0 to QM_IDLE
*Mar 1 16:31:15.271: ISAKMP (0:1): SA is still budding. Attached new ipsec request to it. (local 63
.103.55.122, remote 64.104.56.86)
*Mar 1 16:31:15.279: ISAKMP (0:1): retransmitting phase 1 MM_NO_STATE...
*Mar 1 16:31:15.279: ISAKMP (0:1): incrementing error counter on sa: retransmit phase 1
*Mar 1 16:31:15.279: ISAKMP (0:1): retransmitting phase 1 MM_NO_STATE
*Mar 1 16:31:15.279: ISAKMP (0:1): sending packet to 64.104.56.86 my_port 500 peer_port 500 (I) MM_
NO_STATE
*Mar 1 16:31:25.279: ISAKMP (0:1): retransmitting phase 1 MM_NO_STATE...
*Mar 1 16:31:25.279: ISAKMP (0:1): incrementing error counter on sa: retransmit phase 1
*Mar 1 16:31:25.279: ISAKMP (0:1): retransmitting phase 1 MM_NO_STATE
*Mar 1 16:31:25.279: ISAKMP (0:1): sending packet to 64.104.56.86 my_port 500 peer_port 500 (I) MM_
NO_STATE
*Mar 1 16:31:35.279: ISAKMP (0:1): retransmitting phase 1 MM_NO_STATE...
*Mar 1 16:31:35.279: ISAKMP (0:1): incrementing error counter on sa: retransmit phase 1
*Mar 1 16:31:35.279: ISAKMP (0:1): retransmitting phase 1 MM_NO_STATE
*Mar 1 16:31:35.279: ISAKMP (0:1): sending packet to 64.104.56.86 my_port 500 peer_port 500 (I) MM_
NO_STATE
*Mar 1 16:31:45.267: IPSEC(key_engine): request timer fired: count = 2,
(identity) local= 64.104.56.122, remote= 64.104.56.86,
local_proxy= 10.10.20.0/255.255.255.0/0/0 (type=4),
remote_proxy= 10.10.200.0/255.255.255.0/0/0 (type=4)
*Mar 1 16:31:45.267: ISAKMP: received ke message (3/1)
*Mar 1 16:31:45.267: ISAKMP (0:1): peer does not do paranoid keepalives.
*Mar 1 16:31:45.267: ISAKMP (0:1): deleting SA reason "gen_ipsec_isakmp_delete but doi isakmp" stat
e (I) MM_NO_STATE (peer 64.104.56.86) input queue 0
*Mar 1 16:31:45.271: ISAKMP (0:1): deleting SA reason "gen_ipsec_isakmp_delete but doi isakmp" stat
e (I) MM_NO_STATE (peer 64.104.56.86) input queue 0
*Mar 1 16:31:45.271: ISAKMP (0:1): deleting node -855103855 error TRUE reason "gen_ipsec_isakmp_del
ete but doi isakmp"
*Mar 1 16:31:45.271: ISAKMP (0:1): deleting node 91484349 error TRUE reason "gen_ipsec_isakmp_delet
e but doi isakmp"
*Mar 1 16:31:45.275: ISAKMP (0:1): Input = IKE_MESG_INTERNAL, IKE_PHASE1_DEL
*Mar 1 16:31:45.275: ISAKMP (0:1): Old State = IKE_I_MM1 New State = IKE_DEST_SA
*Mar 1 16:32:45.271: ISAKMP (0:1): purging SA., sa=623DB004, delme=623DB004
*Mar 1 16:32:45.271: ISAKMP (0:1): purging node -855103855
*Mar 1 16:32:45.271: ISAKMP (0:1): purging node 91484349
jona#
01:29:23: IPSEC(sa_request): ,
(key eng. msg.) OUTBOUND local= 64.104.56.86, remote= 64.104.56.122,
local_proxy= 10.10.200.0/255.255.255.0/0/0 (type=4),
remote_proxy= 10.10.20.0/255.255.255.0/0/0 (type=4),
protocol= ESP, transform= esp-des ,
lifedur= 3600s and 4608000kb,
spi= 0xEC823FBF(3967958975), conn_id= 0, keysize= 0, flags= 0x400C
01:29:23: ISAKMP: received ke message (1/1)
01:29:23: ISAKMP: local port 500, remote port 500
01:29:23: ISAKMP (0:3): beginning Main Mode exchange
01:29:23: ISAKMP (0:3): sending packet to 64.104.56.122 (I) MM_NO_STATE
01:29:33: ISAKMP (0:3): retransmitting phase 1 MM_NO_STATE...
01:29:33: ISAKMP (0:3): incrementing error counter on sa: retransmit phase 1
01:29:33: ISAKMP (0:3): retransmitting phase 1 MM_NO_STATE
01:29:33: ISAKMP (0:3): sending packet to 64.104.56.122 (I) MM_NO_STATE
01:29:41: ISAKMP (0:2): purging node -931780196
01:29:41: ISAKMP (0:2): purging node -389324940
01:29:43: ISAKMP (0:3): retransmitting phase 1 MM_NO_STATE...
01:29:43: ISAKMP (0:3): incrementing error counter on sa: retransmit phase 1
01:29:43: ISAKMP (0:3): retransmitting phase 1 MM_NO_STATE
01:29:43: ISAKMP (0:3): sending packet to 64.104.56.122 (I) MM_NO_STATE
01:29:51: ISAKMP (0:2): purging SA., sa=82068960, delme=82068960
01:29:53: IPSEC(key_engine): request timer fired: count = 1,
(identity) local= 64.104.56.86, remote= 64.104.56.122,
local_proxy= 10.10.200.0/255.255.255.0/0/0 (type=4),
remote_proxy= 10.10.20.0/255.255.255.0/0/0 (type=4)
01:29:53: IPSEC(sa_request): ,
(key eng. msg.) OUTBOUND local= 64.104.56.86, remote= 64.104.56.122,
local_proxy= 10.10.200.0/255.255.255.0/0/0 (type=4),
remote_proxy= 10.10.20.0/255.255.255.0/0/0 (type=4),
protocol= ESP, transform= esp-des ,
lifedur= 3600s and 4608000kb,
spi= 0x58B7B053(1488433235), conn_id= 0, keysize= 0, flags= 0x400C
01:29:53: ISAKMP: received ke message (1/1)
01:29:53: ISAKMP (0:3): SA is still budding. Attached new ipsec request to it.
01:29:53: ISAKMP (0:3): retransmitting phase 1 MM_NO_STATE...
01:29:53: ISAKMP (0:3): incrementing error counter on sa: retransmit phase 1
01:29:53: ISAKMP (0:3): retransmitting phase 1 MM_NO_STATE
01:29:53: ISAKMP (0:3): sending packet to 64.104.56.122 (I) MM_NO_STATE
01:30:03: ISAKMP (0:3): retransmitting phase 1 MM_NO_STATE...
01:30:03: ISAKMP (0:3): incrementing error counter on sa: retransmit phase 1
01:30:03: ISAKMP (0:3): retransmitting phase 1 MM_NO_STATE
01:30:03: ISAKMP (0:3): sending packet to 64.104.56.122 (I) MM_NO_STATE
01:30:13: ISAKMP (0:3): retransmitting phase 1 MM_NO_STATE...
01:30:13: ISAKMP (0:3): incrementing error counter on sa: retransmit phase 1
01:30:13: ISAKMP (0:3): retransmitting phase 1 MM_NO_STATE
01:30:13: ISAKMP (0:3): sending packet to 64.104.56.122 (I) MM_NO_STATE
01:30:23: IPSEC(key_engine): request timer fired: count = 2,
(identity) local= 64.104.56.86, remote= 64.104.56.122,
local_proxy= 10.10.200.0/255.255.255.0/0/0 (type=4),
remote_proxy= 10.10.20.0/255.255.255.0/0/0 (type=4)
01:30:23: ISAKMP: received ke message (3/1)
01:30:23: ISAKMP (0:3): ignoring request to send delete notify (sa not authentic
ated) src 64.104.56.86 dst 64.104.56.122
01:30:23: ISAKMP (0:3): retransmitting phase 1 MM_NO_STATE...
01:30:23: ISAKMP (0:3): peer does not do paranoid keepalives.
01:30:23: ISAKMP (0:3): deleting SA reason "death by retransmission P1" state (I
) MM_NO_STATE (peer 64.104.56.122) input queue 0
01:30:23: ISAKMP (0:3): deleting node -897275214 error TRUE reason "death by ret
ransmission P1"
01:30:23: ISAKMP (0:3): deleting node 2030647763 error TRUE reason "death by ret
ransmission P1"
01:31:13: ISAKMP (0:3): purging node -897275214
01:31:13: ISAKMP (0:3): purging node 2030647763
01:31:23: ISAKMP (0:3): purging SA., sa=82067D64, delme=82067D64
i,m a relative newby so be nice, but it seems unusual to me that i only get debug info from the initiating router, from either direction.
here's the debug and thanks in advance for your help..
fstpres#
*Mar 1 16:30:45.267: IPSEC(sa_request): ,
(key eng. msg.) OUTBOUND local= 64.104.56.122, remote= 64.104.56.86,
local_proxy= 10.10.20.0/255.255.255.0/0/0 (type=4),
remote_proxy= 10.10.200.0/255.255.255.0/0/0 (type=4),
protocol= ESP, transform= esp-des (Tunnel),
lifedur= 3600s and 4608000kb,
spi= 0x10D9C8F0(282708208), conn_id= 0, keysize= 0, flags= 0x400A
*Mar 1 16:30:45.271: ISAKMP: received ke message (1/1)
*Mar 1 16:30:45.271: ISAKMP (0:0): SA request profile is (NULL)
*Mar 1 16:30:45.271: ISAKMP: local port 500, remote port 500
*Mar 1 16:30:45.271: ISAKMP: set new node 0 to QM_IDLE
*Mar 1 16:30:45.275: ISAKMP: insert sa successfully sa = 623DB004
*Mar 1 16:30:45.275: ISAKMP (0:1): Can not start Aggressive mode, trying Main mode.
*Mar 1 16:30:45.275: ISAKMP: Looking for a matching key for 64.104.56.86 in default : success
*Mar 1 16:30:45.275: ISAKMP (0:1): found peer pre-shared key matching 64.104.56.86
*Mar 1 16:30:45.275: ISAKMP (0:1): constructed NAT-T vendor-07 ID
*Mar 1 16:30:45.275: ISAKMP (0:1): constructed NAT-T vendor-03 ID
*Mar 1 16:30:45.275: ISAKMP (0:1): constructed NAT-T vendor-02 ID
*Mar 1 16:30:45.275: ISAKMP (0:1): Input = IKE_MESG_FROM_IPSEC, IKE_SA_REQ_MM
*Mar 1 16:30:45.279: ISAKMP (0:1): Old State = IKE_READY New State = IKE_I_MM1
*Mar 1 16:30:45.279: ISAKMP (0:1): beginning Main Mode exchange
*Mar 1 16:30:45.279: ISAKMP (0:1): sending packet to 64.104.56.86 my_port 500 peer_port 500 (I) MM_
NO_STATE
*Mar 1 16:30:55.279: ISAKMP (0:1): retransmitting phase 1 MM_NO_STATE...
*Mar 1 16:30:55.279: ISAKMP (0:1): incrementing error counter on sa: retransmit phase 1
*Mar 1 16:30:55.279: ISAKMP (0:1): retransmitting phase 1 MM_NO_STATE
*Mar 1 16:30:55.279: ISAKMP (0:1): sending packet to 64.104.56.86 my_port 500 peer_port 500 (I) MM_
NO_STATE
*Mar 1 16:31:05.279: ISAKMP (0:1): retransmitting phase 1 MM_NO_STATE...
*Mar 1 16:31:05.279: ISAKMP (0:1): incrementing error counter on sa: retransmit phase 1
*Mar 1 16:31:05.279: ISAKMP (0:1): retransmitting phase 1 MM_NO_STATE
*Mar 1 16:31:05.279: ISAKMP (0:1): sending packet to 64.104.56.86 my_port 500 peer_port 500 (I) MM_
NO_STATE
*Mar 1 16:31:15.267: IPSEC(key_engine): request timer fired: count = 1,
(identity) local= 64.104.56.122, remote= 64.104.56.86,
local_proxy= 10.10.20.0/255.255.255.0/0/0 (type=4),
remote_proxy= 10.10.200.0/255.255.255.0/0/0 (type=4)
*Mar 1 16:31:15.267: IPSEC(sa_request): ,
(key eng. msg.) OUTBOUND local= 64.104.56.122, remote= 64.104.56.86,
local_proxy= 10.10.20.0/255.255.255.0/0/0 (type=4),
remote_proxy= 10.10.200.0/255.255.255.0/0/0 (type=4),
protocol= ESP, transform= esp-des (Tunnel),
lifedur= 3600s and 4608000kb,
spi= 0x90551986(2421496198), conn_id= 0, keysize= 0, flags= 0x400A
*Mar 1 16:31:15.267: ISAKMP: received ke message (1/1)
*Mar 1 16:31:15.271: ISAKMP: set new node 0 to QM_IDLE
*Mar 1 16:31:15.271: ISAKMP (0:1): SA is still budding. Attached new ipsec request to it. (local 63
.103.55.122, remote 64.104.56.86)
*Mar 1 16:31:15.279: ISAKMP (0:1): retransmitting phase 1 MM_NO_STATE...
*Mar 1 16:31:15.279: ISAKMP (0:1): incrementing error counter on sa: retransmit phase 1
*Mar 1 16:31:15.279: ISAKMP (0:1): retransmitting phase 1 MM_NO_STATE
*Mar 1 16:31:15.279: ISAKMP (0:1): sending packet to 64.104.56.86 my_port 500 peer_port 500 (I) MM_
NO_STATE
*Mar 1 16:31:25.279: ISAKMP (0:1): retransmitting phase 1 MM_NO_STATE...
*Mar 1 16:31:25.279: ISAKMP (0:1): incrementing error counter on sa: retransmit phase 1
*Mar 1 16:31:25.279: ISAKMP (0:1): retransmitting phase 1 MM_NO_STATE
*Mar 1 16:31:25.279: ISAKMP (0:1): sending packet to 64.104.56.86 my_port 500 peer_port 500 (I) MM_
NO_STATE
*Mar 1 16:31:35.279: ISAKMP (0:1): retransmitting phase 1 MM_NO_STATE...
*Mar 1 16:31:35.279: ISAKMP (0:1): incrementing error counter on sa: retransmit phase 1
*Mar 1 16:31:35.279: ISAKMP (0:1): retransmitting phase 1 MM_NO_STATE
*Mar 1 16:31:35.279: ISAKMP (0:1): sending packet to 64.104.56.86 my_port 500 peer_port 500 (I) MM_
NO_STATE
*Mar 1 16:31:45.267: IPSEC(key_engine): request timer fired: count = 2,
(identity) local= 64.104.56.122, remote= 64.104.56.86,
local_proxy= 10.10.20.0/255.255.255.0/0/0 (type=4),
remote_proxy= 10.10.200.0/255.255.255.0/0/0 (type=4)
*Mar 1 16:31:45.267: ISAKMP: received ke message (3/1)
*Mar 1 16:31:45.267: ISAKMP (0:1): peer does not do paranoid keepalives.
*Mar 1 16:31:45.267: ISAKMP (0:1): deleting SA reason "gen_ipsec_isakmp_delete but doi isakmp" stat
e (I) MM_NO_STATE (peer 64.104.56.86) input queue 0
*Mar 1 16:31:45.271: ISAKMP (0:1): deleting SA reason "gen_ipsec_isakmp_delete but doi isakmp" stat
e (I) MM_NO_STATE (peer 64.104.56.86) input queue 0
*Mar 1 16:31:45.271: ISAKMP (0:1): deleting node -855103855 error TRUE reason "gen_ipsec_isakmp_del
ete but doi isakmp"
*Mar 1 16:31:45.271: ISAKMP (0:1): deleting node 91484349 error TRUE reason "gen_ipsec_isakmp_delet
e but doi isakmp"
*Mar 1 16:31:45.275: ISAKMP (0:1): Input = IKE_MESG_INTERNAL, IKE_PHASE1_DEL
*Mar 1 16:31:45.275: ISAKMP (0:1): Old State = IKE_I_MM1 New State = IKE_DEST_SA
*Mar 1 16:32:45.271: ISAKMP (0:1): purging SA., sa=623DB004, delme=623DB004
*Mar 1 16:32:45.271: ISAKMP (0:1): purging node -855103855
*Mar 1 16:32:45.271: ISAKMP (0:1): purging node 91484349
jona#
01:29:23: IPSEC(sa_request): ,
(key eng. msg.) OUTBOUND local= 64.104.56.86, remote= 64.104.56.122,
local_proxy= 10.10.200.0/255.255.255.0/0/0 (type=4),
remote_proxy= 10.10.20.0/255.255.255.0/0/0 (type=4),
protocol= ESP, transform= esp-des ,
lifedur= 3600s and 4608000kb,
spi= 0xEC823FBF(3967958975), conn_id= 0, keysize= 0, flags= 0x400C
01:29:23: ISAKMP: received ke message (1/1)
01:29:23: ISAKMP: local port 500, remote port 500
01:29:23: ISAKMP (0:3): beginning Main Mode exchange
01:29:23: ISAKMP (0:3): sending packet to 64.104.56.122 (I) MM_NO_STATE
01:29:33: ISAKMP (0:3): retransmitting phase 1 MM_NO_STATE...
01:29:33: ISAKMP (0:3): incrementing error counter on sa: retransmit phase 1
01:29:33: ISAKMP (0:3): retransmitting phase 1 MM_NO_STATE
01:29:33: ISAKMP (0:3): sending packet to 64.104.56.122 (I) MM_NO_STATE
01:29:41: ISAKMP (0:2): purging node -931780196
01:29:41: ISAKMP (0:2): purging node -389324940
01:29:43: ISAKMP (0:3): retransmitting phase 1 MM_NO_STATE...
01:29:43: ISAKMP (0:3): incrementing error counter on sa: retransmit phase 1
01:29:43: ISAKMP (0:3): retransmitting phase 1 MM_NO_STATE
01:29:43: ISAKMP (0:3): sending packet to 64.104.56.122 (I) MM_NO_STATE
01:29:51: ISAKMP (0:2): purging SA., sa=82068960, delme=82068960
01:29:53: IPSEC(key_engine): request timer fired: count = 1,
(identity) local= 64.104.56.86, remote= 64.104.56.122,
local_proxy= 10.10.200.0/255.255.255.0/0/0 (type=4),
remote_proxy= 10.10.20.0/255.255.255.0/0/0 (type=4)
01:29:53: IPSEC(sa_request): ,
(key eng. msg.) OUTBOUND local= 64.104.56.86, remote= 64.104.56.122,
local_proxy= 10.10.200.0/255.255.255.0/0/0 (type=4),
remote_proxy= 10.10.20.0/255.255.255.0/0/0 (type=4),
protocol= ESP, transform= esp-des ,
lifedur= 3600s and 4608000kb,
spi= 0x58B7B053(1488433235), conn_id= 0, keysize= 0, flags= 0x400C
01:29:53: ISAKMP: received ke message (1/1)
01:29:53: ISAKMP (0:3): SA is still budding. Attached new ipsec request to it.
01:29:53: ISAKMP (0:3): retransmitting phase 1 MM_NO_STATE...
01:29:53: ISAKMP (0:3): incrementing error counter on sa: retransmit phase 1
01:29:53: ISAKMP (0:3): retransmitting phase 1 MM_NO_STATE
01:29:53: ISAKMP (0:3): sending packet to 64.104.56.122 (I) MM_NO_STATE
01:30:03: ISAKMP (0:3): retransmitting phase 1 MM_NO_STATE...
01:30:03: ISAKMP (0:3): incrementing error counter on sa: retransmit phase 1
01:30:03: ISAKMP (0:3): retransmitting phase 1 MM_NO_STATE
01:30:03: ISAKMP (0:3): sending packet to 64.104.56.122 (I) MM_NO_STATE
01:30:13: ISAKMP (0:3): retransmitting phase 1 MM_NO_STATE...
01:30:13: ISAKMP (0:3): incrementing error counter on sa: retransmit phase 1
01:30:13: ISAKMP (0:3): retransmitting phase 1 MM_NO_STATE
01:30:13: ISAKMP (0:3): sending packet to 64.104.56.122 (I) MM_NO_STATE
01:30:23: IPSEC(key_engine): request timer fired: count = 2,
(identity) local= 64.104.56.86, remote= 64.104.56.122,
local_proxy= 10.10.200.0/255.255.255.0/0/0 (type=4),
remote_proxy= 10.10.20.0/255.255.255.0/0/0 (type=4)
01:30:23: ISAKMP: received ke message (3/1)
01:30:23: ISAKMP (0:3): ignoring request to send delete notify (sa not authentic
ated) src 64.104.56.86 dst 64.104.56.122
01:30:23: ISAKMP (0:3): retransmitting phase 1 MM_NO_STATE...
01:30:23: ISAKMP (0:3): peer does not do paranoid keepalives.
01:30:23: ISAKMP (0:3): deleting SA reason "death by retransmission P1" state (I
) MM_NO_STATE (peer 64.104.56.122) input queue 0
01:30:23: ISAKMP (0:3): deleting node -897275214 error TRUE reason "death by ret
ransmission P1"
01:30:23: ISAKMP (0:3): deleting node 2030647763 error TRUE reason "death by ret
ransmission P1"
01:31:13: ISAKMP (0:3): purging node -897275214
01:31:13: ISAKMP (0:3): purging node 2030647763
01:31:23: ISAKMP (0:3): purging SA., sa=82067D64, delme=82067D64