Advertisement
schreiberstein

openswan-proper-handshake01

Mar 20th, 2014
136
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.37 KB | None | 0 0
  1. root@hostname:/etc# ipsec auto --verbose --up L2TP-PSK
  2. 002 "L2TP-PSK" #1: initiating Main Mode
  3. 104 "L2TP-PSK" #1: STATE_MAIN_I1: initiate
  4. 003 "L2TP-PSK" #1: ignoring Vendor ID payload [MS NT5 ISAKMPOAKLEY 00000008]
  5. 003 "L2TP-PSK" #1: received Vendor ID payload [RFC 3947] method set to=115
  6. 003 "L2TP-PSK" #1: received Vendor ID payload [draft-ietf-ipsec-nat-t-ike-02_n] meth=106, but already using method 115
  7. 003 "L2TP-PSK" #1: ignoring Vendor ID payload [FRAGMENTATION]
  8. 003 "L2TP-PSK" #1: ignoring Vendor ID payload [MS-Negotiation Discovery Capable]
  9. 003 "L2TP-PSK" #1: ignoring Vendor ID payload [IKE CGA version 1]
  10. 002 "L2TP-PSK" #1: enabling possible NAT-traversal with method RFC 3947 (NAT-Traversal)
  11. 002 "L2TP-PSK" #1: transition from state STATE_MAIN_I1 to state STATE_MAIN_I2
  12. 106 "L2TP-PSK" #1: STATE_MAIN_I2: sent MI2, expecting MR2
  13. 003 "L2TP-PSK" #1: NAT-Traversal: Result using draft-ietf-ipsec-nat-t-ike (MacOS X): i am NATed
  14. 002 "L2TP-PSK" #1: transition from state STATE_MAIN_I2 to state STATE_MAIN_I3
  15. 108 "L2TP-PSK" #1: STATE_MAIN_I3: sent MI3, expecting MR3
  16. 002 "L2TP-PSK" #1: Main mode peer ID is ID_IPV4_ADDR: '95.xxx.xxx.xxx'
  17. 002 "L2TP-PSK" #1: transition from state STATE_MAIN_I3 to state STATE_MAIN_I4
  18. 004 "L2TP-PSK" #1: STATE_MAIN_I4: ISAKMP SA established {auth=OAKLEY_PRESHARED_KEY cipher=oakley_3des_cbc_192 prf=oakley_sha group=modp1024}
  19. 002 "L2TP-PSK" #1: Dead Peer Detection (RFC 3706): not enabled because peer did not advertise it
  20. 002 "L2TP-PSK" #2: initiating Quick Mode PSK+ENCRYPT+UP+IKEv2ALLOW+SAREFTRACK {using isakmp#1 msgid:ddcfe1b2 proposal=defaults pfsgroup=no-pfs}
  21. 117 "L2TP-PSK" #2: STATE_QUICK_I1: initiate
  22. 002 "L2TP-PSK" #2: IKE message has the Commit Flag set but Pluto doesn't implement this feature; ignoring flag
  23. 003 "L2TP-PSK" #2: NAT-Traversal: received 2 NAT-OA. ignored because peer is not NATed
  24. 003 "L2TP-PSK" #2: our client subnet returned doesn't match my proposal - us:192.168.178.27/32 vs them:93.200.112.66/32
  25. 003 "L2TP-PSK" #2: Allowing questionable proposal anyway [ALLOW_MICROSOFT_BAD_PROPOSAL]
  26. 002 "L2TP-PSK" #2: Dead Peer Detection (RFC 3706): not enabled because peer did not advertise it
  27. 002 "L2TP-PSK" #2: transition from state STATE_QUICK_I1 to state STATE_QUICK_I2
  28. 004 "L2TP-PSK" #2: STATE_QUICK_I2: sent QI2, IPsec SA established transport mode {ESP=>0x1763ac36 <0x209e3f0d xfrm=AES_128-HMAC_SHA1 NATOA=none NATD=none DPD=none}
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement