Project

General

Profile

Actions

Bug #5698

closed

Win10 can't connect ipsec on pfsense 2.2.6

Added by akong wu over 8 years ago. Updated over 8 years ago.

Status:
Rejected
Priority:
Normal
Assignee:
-
Category:
IPsec
Target version:
-
Start date:
12/24/2015
Due date:
% Done:

0%

Estimated time:
Plus Target Version:
Release Notes:
Affected Version:
Affected Architecture:

Description

It's my log

Dec 24 10:41:45 charon: 05[JOB] <6> deleting half open IKE_SA after timeout
Dec 24 10:41:15 charon: 16[NET] <6> sending packet: from 219.85.218.78500 to 203.74.122.103500 (333 bytes)
Dec 24 10:41:15 charon: 16[ENC] <6> generating IKE_SA_INIT response 0 [ SA KE No N(NATD_S_IP) N(NATD_D_IP) CERTREQ N(MULT_AUTH) ]
Dec 24 10:41:15 charon: 16[IKE] <6> sending cert request for "C=TW, ST=Taiwan, L=Taipei, O=aspa, E=, CN=internal-ca"
Dec 24 10:41:15 charon: 16[IKE] <6> remote host is behind NAT
Dec 24 10:41:15 charon: 16[IKE] <6> 203.74.122.103 is initiating an IKE_SA
Dec 24 10:41:15 charon: 16[ENC] <6> received unknown vendor ID: 01:52:8b:bb:c0:06:96:12:18:49:ab:9a:1c:5b:2a:51:00:00:00:02
Dec 24 10:41:15 charon: 16[IKE] <6> received Vid-Initial-Contact vendor ID
Dec 24 10:41:15 charon: 16[IKE] <6> received MS-Negotiation Discovery Capable vendor ID
Dec 24 10:41:15 charon: 16[IKE] <6> received MS NT5 ISAKMPOAKLEY v9 vendor ID
Dec 24 10:41:15 charon: 16[ENC] <6> parsed IKE_SA_INIT request 0 [ SA KE No N(NATD_S_IP) N(NATD_D_IP) V V V V ]

My client system win10,The android strongswan can connect pfsense ipsec.
Error Code is 809 in the Application logs.
Could I need edit something?

Actions #1

Updated by Jim Pingle over 8 years ago

  • Status changed from New to Rejected

Works fine here with Win 10 and 2.2.6 with the settings from the wiki. Not a general issue. Start a forum thread for help with your settings.

Actions #2

Updated by Chris Buechler over 8 years ago

  • Target version deleted (2.2.6)
Actions

Also available in: Atom PDF