--===============1161531748==
Content-Type: multipart/alternative; boundary="0-1090406007-1151672964=:95796"
Content-Transfer-Encoding: 8bit

--0-1090406007-1151672964=:95796
Content-Type: text/plain; charset=iso-8859-1
Content-Transfer-Encoding: 8bit

Hi,

Excuse my poor english!

I am a senegalese student, i am testing connection to a pix 506E with a vpnclient 4.01 using rsa-sig.

i get the message "secure vpn connection terminated locally by the client Reason:Unable to contact security gateway"

I try any things but i can not solve the problem.

I obtained this log from the vpnclient logviewer:

Cisco Systems VPN Client Version 4.0.1 (Rel)
Copyright (C) 1998-2003 Cisco Systems, Inc. All Rights Reserved.
Client Type(s): Windows, WinNT
Running on: 5.0.2195
94 13:30:40.203 06/28/06 Sev=Info/4 CERT/0x63600014
Cert (c=SN,o=DOUANE senegalaise,ou=pkigroup,cn=Kamou) verification succeeded.
95 13:30:40.250 06/28/06 Sev=Info/4 CM/0x63100002
Begin connection process
96 13:30:40.250 06/28/06 Sev=Info/4 CM/0x63100004
Establish secure connection using Ethernet
97 13:30:40.250 06/28/06 Sev=Info/4 CM/0x63100024
Attempt connection with server "10.3.0.46"
98 13:30:41.265 06/28/06 Sev=Info/6 IKE/0x6300003B
Attempting to establish a connection with 10.3.0.46.
99 13:30:41.343 06/28/06 Sev=Info/4 IKE/0x63000013
SENDING >>> ISAKMP OAK MM (SA, VID(Xauth), VID(dpd), VID(Nat-T), VID(Frag), VID(Unity)) to 10.3.0.46
100 13:30:41.421 06/28/06 Sev=Info/5 IKE/0x6300002F
Received ISAKMP packet: peer = 10.3.0.46
101 13:30:41.421 06/28/06 Sev=Info/4 IKE/0x63000014
RECEIVING <<< ISAKMP OAK MM (SA) from 10.3.0.46
102 13:30:41.468 06/28/06 Sev=Info/6 IKE/0x63000001
IOS Vendor ID Contruction successful
103 13:30:41.468 06/28/06 Sev=Info/4 IKE/0x63000013
SENDING >>> ISAKMP OAK MM (KE, NON, VID(?), VID(Unity)) to 10.3.0.46
104 13:30:41.593 06/28/06 Sev=Info/5 IKE/0x6300002F
Received ISAKMP packet: peer = 10.3.0.46
105 13:30:41.593 06/28/06 Sev=Info/4 IKE/0x63000014
RECEIVING <<< ISAKMP OAK MM (KE, NON, CERT_REQ, VID(Xauth), VID(dpd), VID(Unity), VID(?)) from 10.3.0.46
106 13:30:41.593 06/28/06 Sev=Info/5 IKE/0x63000001
Peer supports XAUTH
107 13:30:41.593 06/28/06 Sev=Info/5 IKE/0x63000001
Peer supports DPD
108 13:30:41.593 06/28/06 Sev=Info/5 IKE/0x63000001
Peer is a Cisco-Unity compliant peer
109 13:30:41.593 06/28/06 Sev=Info/5 IKE/0x63000081
Received IOS Vendor ID with unknown capabilities flag 0x00000025
110 13:30:41.640 06/28/06 Sev=Info/4 IKE/0x63000013
SENDING >>> ISAKMP OAK MM *(ID, CERT, CERT_REQ, SIG, NOTIFY:STATUS_INITIAL_CONTACT) to 10.3.0.46
111 13:30:41.921 06/28/06 Sev=Info/5 IKE/0x6300002F
Received ISAKMP packet: peer = 10.3.0.46
112 13:30:41.921 06/28/06 Sev=Info/4 IKE/0x63000014
RECEIVING <<< ISAKMP OAK MM *(ID, CERT, SIG) from 10.3.0.46
113 13:30:41.937 06/28/06 Sev=Info/4 CERT/0x63600014
Cert (c=SN,o=DOUANE senegalaise,cn=monpix.douane,1.2.840.113549.1.9.2= #130d6d6f6e7069782e646f75616e65,1.2.840.113549.1.9 .8=#130931302e332e302e3436) verification succeeded.
114 13:30:41.937 06/28/06 Sev=Warning/3 IKE/0xE3000081
Invalid remote certificate id: ID_FQDN: ID = monpix.douane, Certificate = [NULL]
115 13:30:41.937 06/28/06 Sev=Warning/3 IKE/0xE3000058
The peer's certificate doesn't match Phase 1 ID
116 13:30:41.937 06/28/06 Sev=Warning/2 IKE/0xE30000A5
Unexpected SW error occurred while processing Identity Protection (Main Mode) negotiatorNavigator:2046)
117 13:30:41.937 06/28/06 Sev=Info/4 IKE/0x63000017
Marking IKE SA for deletion (I_Cookie=76198AC89083E130 R_Cookie=CCF7DFE832EC4EA3) reason = DEL_REASON_IKE_NEG_FAILED
118 13:30:41.937 06/28/06 Sev=Info/4 IKE/0x63000013
SENDING >>> ISAKMP OAK INFO *(HASH, DEL) to 10.3.0.46
119 13:30:42.812 06/28/06 Sev=Info/4 IKE/0x6300004A
Discarding IKE SA negotiation (I_Cookie=76198AC89083E130 R_Cookie=CCF7DFE832EC4EA3) reason = DEL_REASON_IKE_NEG_FAILED
120 13:30:42.812 06/28/06 Sev=Info/4 CM/0x63100014
Unable to establish Phase 1 SA with server "10.3.0.46" because of "DEL_REASON_IKE_NEG_FAILED"
121 13:30:42.812 06/28/06 Sev=Info/5 CM/0x63100025
Initializing CVPNDrv
122 13:30:42.812 06/28/06 Sev=Info/4 IKE/0x63000001
IKE received signal to terminate VPN connection
123 13:30:42.828 06/28/06 Sev=Info/4 IKE/0x63000085
Microsoft IPSec Policy Agent service started successfully

Please i really need your help!

Cheers



---------------------------------
Yahoo! Mail réinvente le mail ! Découvrez le nouveau Yahoo! Mail et son interface révolutionnaire.
--0-1090406007-1151672964=:95796
Content-Type: text/html; charset=iso-8859-1
Content-Transfer-Encoding: 8bit

Hi,
 
Excuse my poor english!
 
I am a senegalese student, i am testing connection to a pix 506E with a vpnclient 4.01 using rsa-sig.
 
i get the message "secure vpn connection terminated locally by the client Reason:Unable to contact security gateway"
 
I try any things but i can not solve the problem.
 
I obtained this log from the vpnclient logviewer:
 
Cisco Systems VPN Client Version 4.0.1 (Rel)
Copyright (C) 1998-2003 Cisco Systems, Inc. All Rights Reserved.
Client Type(s): Windows, WinNT
Running on: 5.0.2195
94     13:30:40.203  06/28/06  Sev=Info/4 CERT/0x63600014
Cert (c=SN,o=DOUANE senegalaise,ou=pkigroup,cn=Kamou) verification succeeded.
95     13:30:40.250  06/28/06 
Sev=Info/4 CM/0x63100002
Begin connection process
96     13:30:40.250  06/28/06  Sev=Info/4 CM/0x63100004
Establish secure connection using Ethernet
97     13:30:40.250  06/28/06  Sev=Info/4 CM/0x63100024
Attempt connection with server "10.3.0.46"
98     13:30:41.265  06/28/06  Sev=Info/6 IKE/0x6300003B
Attempting to establish a connection with 10.3.0.46.
99     13:30:41.343  06/28/06  Sev=Info/4 IKE/0x63000013
SENDING >>> ISAKMP OAK MM (SA, VID(Xauth), VID(dpd), VID(Nat-T), VID(Frag), VID(Unity)) to 10.3.0.46
100    13:30:41.421  06/28/06  Sev=Info/5 IKE/0x6300002F
Received ISAKMP packet: peer = 10.3.0.46
101    13:30:41.421  06/28/06  Sev=Info/4 IKE/0x63000014
RECEIVING
<<< ISAKMP OAK MM (SA) from 10.3.0.46
102    13:30:41.468  06/28/06  Sev=Info/6 IKE/0x63000001
IOS Vendor ID Contruction successful
103    13:30:41.468  06/28/06  Sev=Info/4 IKE/0x63000013
SENDING >>> ISAKMP OAK MM (KE, NON, VID(?), VID(Unity)) to 10.3.0.46
104    13:30:41.593  06/28/06  Sev=Info/5 IKE/0x6300002F
Received ISAKMP packet: peer = 10.3.0.46
105    13:30:41.593  06/28/06  Sev=Info/4 IKE/0x63000014
RECEIVING <<< ISAKMP OAK MM (KE, NON, CERT_REQ, VID(Xauth), VID(dpd), VID(Unity), VID(?)) from 10.3.0.46
106    13:30:41.593  06/28/06  Sev=Info/5 IKE/0x63000001
Peer supports XAUTH
107    13:30:41.593  06/28/06  Sev=Info/5 IKE/0x63000001
Peer supports DPD

108    13:30:41.593  06/28/06  Sev=Info/5 IKE/0x63000001
Peer is a Cisco-Unity compliant peer
109    13:30:41.593  06/28/06  Sev=Info/5 IKE/0x63000081
Received IOS Vendor ID with unknown capabilities flag 0x00000025
110    13:30:41.640  06/28/06  Sev=Info/4 IKE/0x63000013
SENDING >>> ISAKMP OAK MM *(ID, CERT, CERT_REQ, SIG, NOTIFY:STATUS_INITIAL_CONTACT) to 10.3.0.46
111    13:30:41.921  06/28/06  Sev=Info/5 IKE/0x6300002F
Received ISAKMP packet: peer = 10.3.0.46
112    13:30:41.921  06/28/06  Sev=Info/4 IKE/0x63000014
RECEIVING <<< ISAKMP OAK MM *(ID, CERT, SIG) from 10.3.0.46
113    13:30:41.937  06/28/06  Sev=Info/4 CERT/0x63600014
Cert (c=SN,o=DOUANE
senegalaise,cn=monpix.douane,1.2.840.113549.1.9.2= #130d6d6f6e7069782e646f75616e65,1.2.840.113549.1.9 .8=#130931302e332e302e3436) verification succeeded.
114    13:30:41.937  06/28/06  Sev=Warning/3 IKE/0xE3000081
Invalid remote certificate id: ID_FQDN: ID = monpix.douane, Certificate = [NULL]
115    13:30:41.937  06/28/06  Sev=Warning/3 IKE/0xE3000058
The peer's certificate doesn't match Phase 1 ID
116    13:30:41.937  06/28/06  Sev=Warning/2 IKE/0xE30000A5
Unexpected SW error occurred while processing Identity Protection (Main Mode) negotiatorNavigator:2046)
117    13:30:41.937  06/28/06  Sev=Info/4 IKE/0x63000017
Marking IKE SA for deletion  (I_Cookie=76198AC89083E130 R_Cookie=CCF7DFE832EC4EA3) reason = DEL_REASON_IKE_NEG_FAILED
118    13:30:41.937 
06/28/06  Sev=Info/4 IKE/0x63000013
SENDING >>> ISAKMP OAK INFO *(HASH, DEL) to 10.3.0.46
119    13:30:42.812  06/28/06  Sev=Info/4 IKE/0x6300004A
Discarding IKE SA negotiation (I_Cookie=76198AC89083E130 R_Cookie=CCF7DFE832EC4EA3) reason = DEL_REASON_IKE_NEG_FAILED
120    13:30:42.812  06/28/06  Sev=Info/4 CM/0x63100014
Unable to establish Phase 1 SA with server "10.3.0.46" because of "DEL_REASON_IKE_NEG_FAILED"
121    13:30:42.812  06/28/06  Sev=Info/5 CM/0x63100025
Initializing CVPNDrv
122    13:30:42.812  06/28/06  Sev=Info/4 IKE/0x63000001
IKE received signal to terminate VPN connection
123    13:30:42.828  06/28/06  Sev=Info/4 IKE/0x63000085
Microsoft IPSec Policy Agent service started successfully
 

Please i really need your help!
 
Cheers
 




Yahoo! Mail réinvente le mail ! Découvrez le http://fr.promotions.yahoo.com/mail/nouveaumail.html
">nouveau Yahoo! Mail et son interface révolutionnaire.

--0-1090406007-1151672964=:95796--

--===============1161531748==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

_______________________________________________
VPN mailing list
VPN@lists.shmoo.com
http://lists.shmoo.com/mailman/listinfo/vpn
--===============1161531748==--