Remote Access

VPN
I was setting remote access vpn on pix....It was not coming up I had set it up with encrytion for des When i ran debug i was getting following output Can anybody help me out Thanks in advance *Mar 1 01:33:58.459: ISAKMP (0:2): peer does not do paranoid keepalives. *Mar 1 01:33:58.463: ISAKMP (0:2): deleting SA reason "death by tree-walk node" state (R) AG_NO_STATE (peer 192.168.1.21) input q ueue 0 *Mar 1 01:33:58.463: ISAKMP (0:1): peer does not do paranoid keepalives. *Mar 1 01:33:58.463: ISAKMP (0:1): deleting SA reason "death by tree-walk node" state (R) AG_NO_STATE (peer 192.168.1.21) input q ueue 0 *Mar 1 01:33:58.463: ISAKMP (0:2): deleting SA reason "death by tree-walk node" state (R) AG_NO_STATE (peer 192.168.1.21) input q ueue 0 *Mar 1 01:33:58.463: ISAKMP: Unlocking IKE struct 0x82F15574 for isadb_mark_sa_deleted(), count 1 *Mar 1 01:33:58.467: ISAKMP (0:2): Input = IKE_MESG_INTERNAL, IKE_PHASE1_DEL *Mar 1 01:33:58.467: ISAKMP (0:2): Old State = IKE_READY New State = IKE_DEST_SA *Mar 1 01:33:58.467: ISAKMP (0:1): deleting SA reason "death by tree-walk node" state (R) AG_NO_STATE (peer 192.168.1.21) input q ueue 0 *Mar 1 01:33:58.467: ISAKMP: Unlocking IKE struct 0x82F15574 for isadb_mark_sa_deleted(), count 0 *Mar 1 01:33:58.467: ISAKMP: Deleting peer node by peer_reap for 192.168.1.21: 82F15574 *Mar 1 01:33:58.471: ISAKMP (0:1): Input = IKE_MESG_INTERNAL, IKE_PHASE1_DEL *Mar 1 01:33:58.471: ISAKMP (0:1): Old State = IKE_READY New State = IKE_DEST_SA RS4#clear crypto isakmp RS4#clear crypto isakmp RS4# RS4# *Mar 1 01:34:07.591: ISAKMP (0:2): peer does not do paranoid keepalives. *Mar 1 01:34:07.591: ISAKMP (0:1): peer does not do paranoid keepalives. *Mar 1 01:34:09.079: ISAKMP (0:2): peer does not do paranoid keepalives. *Mar 1 01:34:09.079: ISAKMP (0:1): peer does not do paranoid keepalives. *Mar 1 01:34:17.871: ISAKMP (0:0): received packet from 192.168.1.21 dport 500 sport 500 Global (N) NEW SA *Mar 1 01:34:17.871: ISAKMP: Created a peer struct for 192.168.1.21, peer port 500 *Mar 1 01:34:17.871: ISAKMP: Locking peer struct 0x82FF7BD0, IKE refcount 1 for Responding to new initiation *Mar 1 01:34:17.871: ISAKMP (0:0): Setting client config settings 82F15574 *Mar 1 01:34:17.875: ISAKMP (0:0): (Re)Setting client xauth list and state *Mar 1 01:34:17.875: ISAKMP: local port 500, remote port 500 *Mar 1 01:34:17.875: ISAKMP: Find a dup sa in the avl tree during calling isadb_insert sa = 8302AEC4 *Mar 1 01:34:17.879: ISAKMP (0:3): processing SA payload. message ID = 0 *Mar 1 01:34:17.879: ISAKMP (0:3): processing ID payload. message ID = 0 *Mar 1 01:34:17.879: ISAKMP (0:3): ID payload next-payload : 13 type : 11 group id : netowrking protocol : 17 port : 500 length : 18 *Mar 1 01:34:17.879: ISAKMP (0:3): peer matches *none* of the profiles *Mar 1 01:34:17.879: ISAKMP (0:3): processing vendor id payload *Mar 1 01:34:17.879: ISAKMP (0:3): vendor ID seems Unity/DPD but major 215 mismatch *Mar 1 01:34:17.879: ISAKMP (0:3): vendor ID is XAUTH *Mar 1 01:34:17.879: ISAKMP (0:3): processing vendor id payload *Mar 1 01:34:17.883: ISAKMP (0:3): vendor ID is DPD *Mar 1 01:34:17.883: ISAKMP (0:3): processing vendor id payload *Mar 1 01:34:17.883: ISAKMP (0:3): vendor ID seems Unity/DPD but major 123 mismatch *Mar 1 01:34:17.883: ISAKMP (0:3): vendor ID is NAT-T v2 *Mar 1 01:34:17.883: ISAKMP (0:3): processing vendor id payload *Mar 1 01:34:17.883: ISAKMP (0:3): vendor ID seems Unity/DPD but major 194 mismatch *Mar 1 01:34:17.883: ISAKMP (0:3): processing vendor id payload *Mar 1 01:34:17.883: ISAKMP (0:3): vendor ID is Unity *Mar 1 01:34:17.883: ISAKMP (0:3) Authentication by xauth preshared *Mar 1 01:34:17.887: ISAKMP (0:3): Checking ISAKMP transform 1 against priority 10 policy *Mar 1 01:34:17.887: ISAKMP: encryption AES-CBC *Mar 1 01:34:17.887: ISAKMP: hash SHA *Mar 1 01:34:17.887: ISAKMP: default group 2 *Mar 1 01:34:17.887: ISAKMP: auth XAUTHInitPreShared *Mar 1 01:34:17.887: ISAKMP: life type in seconds *Mar 1 01:34:17.887: ISAKMP: life duration (VPI) of 0x0 0x20 0xC4 0x9B *Mar 1 01:34:17.887: ISAKMP: keylength of 256 *Mar 1 01:34:17.887: ISAKMP (0:3): Encryption algorithm offered does not match policy! *Mar 1 01:34:17.887: ISAKMP (0:3): atts are not acceptable. Next payload is 3 *Mar 1 01:34:17.891: ISAKMP (0:3): Checking ISAKMP transform 2 against priority 10 policy *Mar 1 01:34:17.891: ISAKMP: encryption AES-CBC *Mar 1 01:34:17.891: ISAKMP: hash MD5 *Mar 1 01:34:17.891: ISAKMP: default group 2 *Mar 1 01:34:17.891: ISAKMP: auth XAUTHInitPreShared *Mar 1 01:34:17.891: ISAKMP: life type in seconds *Mar 1 01:34:17.891: ISAKMP: life duration (VPI) of 0x0 0x20 0xC4 0x9B *Mar 1 01:34:17.891: ISAKMP: keylength of 256 *Mar 1 01:34:17.891: ISAKMP (0:3): Encryption algorithm offered does not match policy! *Mar 1 01:34:17.891: ISAKMP (0:3): atts are not acceptable. Next payload is 3 *Mar 1 01:34:17.891: ISAKMP (0:3): Checking ISAKMP transform 3 against priority 10 policy *Mar 1 01:34:17.895: ISAKMP: encryption AES-CBC *Mar 1 01:34:17.895: ISAKMP: hash SHA *Mar 1 01:34:17.895: ISAKMP: default group 2 *Mar 1 01:34:17.895: ISAKMP: auth pre-share *Mar 1 01:34:17.895: ISAKMP: life type in seconds *Mar 1 01:34:17.895: ISAKMP: life duration (VPI) of 0x0 0x20 0xC4 0x9B *Mar 1 01:34:17.895: ISAKMP: keylength of 256 *Mar 1 01:34:17.895: ISAKMP (0:3): Encryption algorithm offered does not match policy! *Mar 1 01:34:17.895: ISAKMP (0:3): atts are not acceptable. Next payload is 3 *Mar 1 01:34:17.895: ISAKMP (0:3): Checking ISAKMP transform 4 against priority 10 policy *Mar 1 01:34:17.899: ISAKMP: encryption AES-CBC *Mar 1 01:34:17.899: ISAKMP: hash MD5 *Mar 1 01:34:17.899: ISAKMP: default group 2 *Mar 1 01:34:17.899: ISAKMP: auth pre-share *Mar 1 01:34:17.899: ISAKMP: life type in seconds *Mar 1 01:34:17.899: ISAKMP: life duration (VPI) of 0x0 0x20 0xC4 0x9B *Mar 1 01:34:17.899: ISAKMP: keylength of 256 *Mar 1 01:34:17.899: ISAKMP (0:3): Encryption algorithm offered does not match policy! *Mar 1 01:34:17.899: ISAKMP (0:3): atts are not acceptable. Next payload is 3 *Mar 1 01:34:17.899: ISAKMP (0:3): Checking ISAKMP transform 5 against priority 10 policy *Mar 1 01:34:17.899: ISAKMP: encryption AES-CBC *Mar 1 01:34:17.903: ISAKMP: hash SHA *Mar 1 01:34:17.903: ISAKMP: default group 2 *Mar 1 01:34:17.903: ISAKMP: auth XAUTHInitPreShared *Mar 1 01:34:17.903: ISAKMP: life type in seconds *Mar 1 01:34:17.903: ISAKMP: life duration (VPI) of 0x0 0x20 0xC4 0x9B *Mar 1 01:34:17.903: ISAKMP: keylength of 128 *Mar 1 01:34:17.903: ISAKMP (0:3): Encryption algorithm offered does not match policy! *Mar 1 01:34:17.903: ISAKMP (0:3): atts are not acceptable. Next payload is 3 *Mar 1 01:34:17.903: ISAKMP (0:3): Checking ISAKMP transform 6 against priority 10 policy *Mar 1 01:34:17.903: ISAKMP: encryption AES-CBC *Mar 1 01:34:17.903: ISAKMP: hash MD5 *Mar 1 01:34:17.907: ISAKMP: default group 2 *Mar 1 01:34:17.907: ISAKMP: auth XAUTHInitPreShared *Mar 1 01:34:17.907: ISAKMP: life type in seconds *Mar 1 01:34:17.907: ISAKMP: life duration (VPI) of 0x0 0x20 0xC4 0x9B *Mar 1 01:34:17.907: ISAKMP: keylength of 128 *Mar 1 01:34:17.907: ISAKMP (0:3): Encryption algorithm offered does not match policy! *Mar 1 01:34:17.907: ISAKMP (0:3): atts are not acceptable. Next payload is 3 *Mar 1 01:34:17.907: ISAKMP (0:3): Checking ISAKMP transform 7 against priority 10 policy *Mar 1 01:34:17.907: ISAKMP: encryption AES-CBC *Mar 1 01:34:17.907: ISAKMP: hash SHA *Mar 1 01:34:17.911: ISAKMP: default group 2 *Mar 1 01:34:17.911: ISAKMP: auth pre-share *Mar 1 01:34:17.911: ISAKMP: life type in seconds *Mar 1 01:34:17.911: ISAKMP: life duration (VPI) of 0x0 0x20 0xC4 0x9B *Mar 1 01:34:17.911: ISAKMP: keylength of 128 *Mar 1 01:34:17.911: ISAKMP (0:3): Encryption algorithm offered does not match policy! *Mar 1 01:34:17.911: ISAKMP (0:3): atts are not acceptable. Next payload is 3 *Mar 1 01:34:17.911: ISAKMP (0:3): Checking ISAKMP transform 8 against priority 10 policy *Mar 1 01:34:17.911: ISAKMP: encryption AES-CBC *Mar 1 01:34:17.911: ISAKMP: hash MD5 *Mar 1 01:34:17.911: ISAKMP: default group 2 *Mar 1 01:34:17.915: ISAKMP: auth pre-share *Mar 1 01:34:17.915: ISAKMP: life type in seconds *Mar 1 01:34:17.915: ISAKMP: life duration (VPI) of 0x0 0x20 0xC4 0x9B *Mar 1 01:34:17.915: ISAKMP: keylength of 128 *Mar 1 01:34:17.915: ISAKMP (0:3): Encryption algorithm offered does not match policy! *Mar 1 01:34:17.915: ISAKMP (0:3): atts are not acceptable. Next payload is 3 *Mar 1 01:34:17.915: ISAKMP (0:3): Checking ISAKMP transform 9 against priority 10 policy *Mar 1 01:34:17.915: ISAKMP: encryption 3DES-CBC *Mar 1 01:34:17.915: ISAKMP: hash SHA *Mar 1 01:34:17.915: ISAKMP: default group 2 *Mar 1 01:34:17.915: ISAKMP: auth XAUTHInitPreShared *Mar 1 01:34:17.919: ISAKMP: life type in seconds *Mar 1 01:34:17.919: ISAKMP: life duration (VPI) of 0x0 0x20 0xC4 0x9B *Mar 1 01:34:17.919: ISAKMP (0:3): Encryption algorithm offered does not match policy! *Mar 1 01:34:17.919: ISAKMP (0:3): atts are not acceptable. Next payload is 3 *Mar 1 01:34:17.919: ISAKMP (0:3): Checking ISAKMP transform 10 against priority 10 policy *Mar 1 01:34:17.919: ISAKMP: encryption 3DES-CBC *Mar 1 01:34:17.919: ISAKMP: hash MD5 *Mar 1 01:34:17.919: ISAKMP: default group 2 *Mar 1 01:34:17.919: ISAKMP: auth XAUTHInitPreShared *Mar 1 01:34:17.919: ISAKMP: life type in seconds *Mar 1 01:34:17.923: ISAKMP: life duration (VPI) of 0x0 0x20 0xC4 0x9B *Mar 1 01:34:17.923: ISAKMP (0:3): Encryption algorithm offered does not match policy! *Mar 1 01:34:17.923: ISAKMP (0:3): atts are not acceptable. Next payload is 3 *Mar 1 01:34:17.923: ISAKMP (0:3): Checking ISAKMP transform 11 against priority 10 policy *Mar 1 01:34:17.923: ISAKMP: encryption 3DES-CBC *Mar 1 01:34:17.923: ISAKMP: hash SHA *Mar 1 01:34:17.923: ISAKMP: default group 2 *Mar 1 01:34:17.923: ISAKMP: auth pre-share *Mar 1 01:34:17.923: ISAKMP: life type in seconds *Mar 1 01:34:17.923: ISAKMP: life duration (VPI) of 0x0 0x20 0xC4 0x9B *Mar 1 01:34:17.927: ISAKMP (0:3): Encryption algorithm offered does not match policy! *Mar 1 01:34:17.927: ISAKMP (0:3): atts are not acceptable. Next payload is 3 *Mar 1 01:34:17.927: ISAKMP (0:3): Checking ISAKMP transform 12 against priority 10 policy *Mar 1 01:34:17.927: ISAKMP: encryption 3DES-CBC *Mar 1 01:34:17.927: ISAKMP: hash MD5 *Mar 1 01:34:17.927: ISAKMP: default group 2 *Mar 1 01:34:17.927: ISAKMP: auth pre-share *Mar 1 01:34:17.927: ISAKMP: life type in seconds *Mar 1 01:34:17.927: ISAKMP: life duration (VPI) of 0x0 0x20 0xC4 0x9B *Mar 1 01:34:17.927: ISAKMP (0:3): Encryption algorithm offered does not match policy! *Mar 1 01:34:17.931: ISAKMP (0:3): atts are not acceptable. Next payload is 3 *Mar 1 01:34:17.931: ISAKMP (0:3): Checking ISAKMP transform 13 against priority 10 policy *Mar 1 01:34:17.931: ISAKMP: encryption DES-CBC *Mar 1 01:34:17.931: ISAKMP: hash MD5 *Mar 1 01:34:17.931: ISAKMP: default group 2 *Mar 1 01:34:17.931: ISAKMP: auth XAUTHInitPreShared *Mar 1 01:34:17.931: ISAKMP: life type in seconds *Mar 1 01:34:17.931: ISAKMP: life duration (VPI) of 0x0 0x20 0xC4 0x9B *Mar 1 01:34:17.931: ISAKMP (0:3): Hash algorithm offered does not match policy! *Mar 1 01:34:17.931: ISAKMP (0:3): atts are not acceptable. Next payload is 3 *Mar 1 01:34:17.931: ISAKMP (0:3): Checking ISAKMP transform 14 against priority 10 policy *Mar 1 01:34:17.935: ISAKMP: encryption DES-CBC *Mar 1 01:34:17.935: ISAKMP: hash MD5 *Mar 1 01:34:17.935: ISAKMP: default group 2 *Mar 1 01:34:17.935: ISAKMP: auth pre-share *Mar 1 01:34:17.935: ISAKMP: life type in seconds *Mar 1 01:34:17.935: ISAKMP: life duration (VPI) of 0x0 0x20 0xC4 0x9B *Mar 1 01:34:17.935: ISAKMP (0:3): Hash algorithm offered does not match policy! *Mar 1 01:34:17.935: ISAKMP (0:3): atts are not acceptable. Next payload is 0 *Mar 1 01:34:17.935: ISAKMP (0:3): Checking ISAKMP transform 1 against priority 65535 policy *Mar 1 01:34:17.939: ISAKMP: encryption AES-CBC *Mar 1 01:34:17.939: ISAKMP: hash SHA *Mar 1 01:34:17.939: ISAKMP: default group 2 *Mar 1 01:34:17.939: ISAKMP: auth XAUTHInitPreShared *Mar 1 01:34:17.939: ISAKMP: life type in seconds *Mar 1 01:34:17.939: ISAKMP: life duration (VPI) of 0x0 0x20 0xC4 0x9B *Mar 1 01:34:17.939: ISAKMP: keylength of 256 *Mar 1 01:34:17.939: ISAKMP (0:3): Encryption algorithm offered does not match policy! *Mar 1 01:34:17.939: ISAKMP (0:3): atts are not acceptable. Next payload is 3 *Mar 1 01:34:17.939: ISAKMP (0:3): Checking ISAKMP transform 2 against priority 65535 policy *Mar 1 01:34:17.943: ISAKMP: encryption AES-CBC *Mar 1 01:34:17.943: ISAKMP: hash MD5 *Mar 1 01:34:17.943: ISAKMP: default group 2 *Mar 1 01:34:17.943: ISAKMP: auth XAUTHInitPreShared *Mar 1 01:34:17.943: ISAKMP: life type in seconds *Mar 1 01:34:17.943: ISAKMP: life duration (VPI) of 0x0 0x20 0xC4 0x9B *Mar 1 01:34:17.943: ISAKMP: keylength of 256 *Mar 1 01:34:17.943: ISAKMP (0:3): Encryption algorithm offered does not match policy! *Mar 1 01:34:17.943: ISAKMP (0:3): atts are not acceptable. Next payload is 3 *Mar 1 01:34:17.943: ISAKMP (0:3): Checking ISAKMP transform 3 against priority 65535 policy *Mar 1 01:34:17.943: ISAKMP: encryption AES-CBC *Mar 1 01:34:17.947: ISAKMP: hash SHA *Mar 1 01:34:17.947: ISAKMP: default group 2 *Mar 1 01:34:17.947: ISAKMP: auth pre-share *Mar 1 01:34:17.947: ISAKMP: life type in seconds *Mar 1 01:34:17.947: ISAKMP: life duration (VPI) of 0x0 0x20 0xC4 0x9B *Mar 1 01:34:17.947: ISAKMP: keylength of 256 *Mar 1 01:34:17.947: ISAKMP (0:3): Encryption algorithm offered does not match policy! *Mar 1 01:34:17.947: ISAKMP (0:3): atts are not acceptable. Next payload is 3 *Mar 1 01:34:17.947: ISAKMP (0:3): Checking ISAKMP transform 4 against priority 65535 policy *Mar 1 01:34:17.947: ISAKMP: encryption AES-CBC *Mar 1 01:34:17.947: ISAKMP: hash MD5 *Mar 1 01:34:17.951: ISAKMP: default group 2 *Mar 1 01:34:17.951: ISAKMP: auth pre-share *Mar 1 01:34:17.951: ISAKMP: life type in seconds *Mar 1 01:34:17.951: ISAKMP: life duration (VPI) of 0x0 0x20 0xC4 0x9B *Mar 1 01:34:17.951: ISAKMP: keylength of 256 *Mar 1 01:34:17.951: ISAKMP (0:3): Encryption algorithm offered does not match policy! *Mar 1 01:34:17.951: ISAKMP (0:3): atts are not acceptable. Next payload is 3 *Mar 1 01:34:17.951: ISAKMP (0:3): Checking ISAKMP transform 5 against priority 65535 policy *Mar 1 01:34:17.951: ISAKMP: encryption AES-CBC *Mar 1 01:34:17.951: ISAKMP: hash SHA *Mar 1 01:34:17.951: ISAKMP: default group 2 *Mar 1 01:34:17.955: ISAKMP: auth XAUTHInitPreShared *Mar 1 01:34:17.955: ISAKMP: life type in seconds *Mar 1 01:34:17.955: ISAKMP: life duration (VPI) of 0x0 0x20 0xC4 0x9B *Mar 1 01:34:17.955: ISAKMP: keylength of 128 *Mar 1 01:34:17.955: ISAKMP (0:3): Encryption algorithm offered does not match policy! *Mar 1 01:34:17.955: ISAKMP (0:3): atts are not acceptable. Next payload is 3 *Mar 1 01:34:17.955: ISAKMP (0:3): Checking ISAKMP transform 6 against priority 65535 policy *Mar 1 01:34:17.955: ISAKMP: encryption AES-CBC *Mar 1 01:34:17.955: ISAKMP: hash MD5 *Mar 1 01:34:17.955: ISAKMP: default group 2 *Mar 1 01:34:17.955: ISAKMP: auth XAUTHInitPreShared *Mar 1 01:34:17.959: ISAKMP: life type in seconds *Mar 1 01:34:17.959: ISAKMP: life duration (VPI) of 0x0 0x20 0xC4 0x9B *Mar 1 01:34:17.959: ISAKMP: keylength of 128 *Mar 1 01:34:17.959: ISAKMP (0:3): Encryption algorithm offered does not match policy! *Mar 1 01:34:17.959: ISAKMP (0:3): atts are not acceptable. Next payload is 3 *Mar 1 01:34:17.959: ISAKMP (0:3): Checking ISAKMP transform 7 against priority 65535 policy *Mar 1 01:34:17.959: ISAKMP: encryption AES-CBC *Mar 1 01:34:17.959: ISAKMP: hash SHA *Mar 1 01:34:17.959: ISAKMP: default group 2 *Mar 1 01:34:17.959: ISAKMP: auth pre-share *Mar 1 01:34:17.959: ISAKMP: life type in seconds *Mar 1 01:34:17.963: ISAKMP: life duration (VPI) of 0x0 0x20 0xC4 0x9B *Mar 1 01:34:17.963: ISAKMP: keylength of 128 *Mar 1 01:34:17.963: ISAKMP (0:3): Encryption algorithm offered does not match policy! *Mar 1 01:34:17.963: ISAKMP (0:3): atts are not acceptable. Next payload is 3 *Mar 1 01:34:17.963: ISAKMP (0:3): Checking ISAKMP transform 8 against priority 65535 policy *Mar 1 01:34:17.963: ISAKMP: encryption AES-CBC *Mar 1 01:34:17.963: ISAKMP: hash MD5 *Mar 1 01:34:17.963: ISAKMP: default group 2 *Mar 1 01:34:17.963: ISAKMP: auth pre-share *Mar 1 01:34:17.963: ISAKMP: life type in seconds *Mar 1 01:34:17.963: ISAKMP: life duration (VPI) of 0x0 0x20 0xC4 0x9B *Mar 1 01:34:17.967: ISAKMP: keylength of 128 *Mar 1 01:34:17.967: ISAKMP (0:3): Encryption algorithm offered does not match policy! *Mar 1 01:34:17.967: ISAKMP (0:3): atts are not acceptable. Next payload is 3 *Mar 1 01:34:17.967: ISAKMP (0:3): Checking ISAKMP transform 9 against priority 65535 policy *Mar 1 01:34:17.967: ISAKMP: encryption 3DES-CBC *Mar 1 01:34:17.967: ISAKMP: hash SHA *Mar 1 01:34:17.967: ISAKMP: default group 2 *Mar 1 01:34:17.967: ISAKMP: auth XAUTHInitPreShared *Mar 1 01:34:17.967: ISAKMP: life type in seconds *Mar 1 01:34:17.967: ISAKMP: life duration (VPI) of 0x0 0x20 0xC4 0x9B *Mar 1 01:34:17.971: ISAKMP (0:3): Encryption algorithm offered does not match policy! *Mar 1 01:34:17.971: ISAKMP (0:3): atts are not acceptable. Next payload is 3 *Mar 1 01:34:17.971: ISAKMP (0:3): Checking ISAKMP transform 10 against priority 65535 policy *Mar 1 01:34:17.971: ISAKMP: encryption 3DES-CBC *Mar 1 01:34:17.971: ISAKMP: hash MD5 *Mar 1 01:34:17.971: ISAKMP: default group 2 *Mar 1 01:34:17.971: ISAKMP: auth XAUTHInitPreShared *Mar 1 01:34:17.971: ISAKMP: life type in seconds *Mar 1 01:34:17.971: ISAKMP: life duration (VPI) of 0x0 0x20 0xC4 0x9B *Mar 1 01:34:17.971: ISAKMP (0:3): Encryption algorithm offered does not match policy! *Mar 1 01:34:17.975: ISAKMP (0:3): atts are not acceptable. Next payload is 3 *Mar 1 01:34:17.975: ISAKMP (0:3): Checking ISAKMP transform 11 against priority 65535 policy *Mar 1 01:34:17.975: ISAKMP: encryption 3DES-CBC *Mar 1 01:34:17.975: ISAKMP: hash SHA *Mar 1 01:34:17.975: ISAKMP: default group 2 *Mar 1 01:34:17.975: ISAKMP: auth pre-share *Mar 1 01:34:17.975: ISAKMP: life type in seconds *Mar 1 01:34:17.975: ISAKMP: life duration (VPI) of 0x0 0x20 0xC4 0x9B *Mar 1 01:34:17.975: ISAKMP (0:3): Encryption algorithm offered does not match policy! *Mar 1 01:34:17.975: ISAKMP (0:3): atts are not acceptable. Next payload is 3 *Mar 1 01:34:17.979: ISAKMP (0:3): Checking ISAKMP transform 12 against priority 65535 policy *Mar 1 01:34:17.979: ISAKMP: encryption 3DES-CBC *Mar 1 01:34:17.979: ISAKMP: hash MD5 *Mar 1 01:34:17.979: ISAKMP: default group 2 *Mar 1 01:34:17.979: ISAKMP: auth pre-share *Mar 1 01:34:17.979: ISAKMP: life type in seconds *Mar 1 01:34:17.979: ISAKMP: life duration (VPI) of 0x0 0x20 0xC4 0x9B *Mar 1 01:34:17.979: ISAKMP (0:3): Encryption algorithm offered does not match policy! *Mar 1 01:34:17.979: ISAKMP (0:3): atts are not acceptable. Next payload is 3 *Mar 1 01:34:17.979: ISAKMP (0:3): Checking ISAKMP transform 13 against priority 65535 policy *Mar 1 01:34:17.983: ISAKMP: encryption DES-CBC *Mar 1 01:34:17.983: ISAKMP: hash MD5 *Mar 1 01:34:17.983: ISAKMP: default group 2 *Mar 1 01:34:17.983: ISAKMP: auth XAUTHInitPreShared *Mar 1 01:34:17.983: ISAKMP: life type in seconds *Mar 1 01:34:17.983: ISAKMP: life duration (VPI) of 0x0 0x20 0xC4 0x9B *Mar 1 01:34:17.983: ISAKMP (0:3): Hash algorithm offered does not match policy! *Mar 1 01:34:17.983: ISAKMP (0:3): atts are not acceptable. Next payload is 3 *Mar 1 01:34:17.983: ISAKMP (0:3): Checking ISAKMP transform 14 against priority 65535 policy *Mar 1 01:34:17.983: ISAKMP: encryption DES-CBC *Mar 1 01:34:17.983: ISAKMP: hash MD5 *Mar 1 01:34:17.987: ISAKMP: default group 2 *Mar 1 01:34:17.987: ISAKMP: auth pre-share *Mar 1 01:34:17.987: ISAKMP: life type in seconds *Mar 1 01:34:17.987: ISAKMP: life duration (VPI) of 0x0 0x20 0xC4 0x9B *Mar 1 01:34:17.987: ISAKMP (0:3): Hash algorithm offered does not match policy! *Mar 1 01:34:17.987: ISAKMP (0:3): atts are not acceptable. Next payload is 0 *Mar 1 01:34:17.987: ISAKMP (0:3): no offers accepted! *Mar 1 01:34:17.987: ISAKMP (0:3): phase 1 SA policy not acceptable! (local 192.168.1.166 remote 192.168.1.21) *Mar 1 01:34:17.987: ISAKMP (0:3): incrementing error counter on sa, attempt 1 of 5: construct_fail_ag_init *Mar 1 01:34:17.991: ISAKMP (0:3): Unknown Input IKE_MESG_FROM_PEER, IKE_AM_EXCH: state = IKE_READY *Mar 1 01:34:17.991: ISAKMP (0:3): Input = IKE_MESG_FROM_PEER, IKE_AM_EXCH *Mar 1 01:34:17.991: ISAKMP (0:3): Old State = IKE_READY New State = IKE_READY *Mar 1 01:34:17.991: %CRYPTO-6-IKMP_MODE_FAILURE: Processing of Aggressive mode failed with peer at 192.168.1.21 *Mar 1 01:34:23.251: ISAKMP (0:3): received packet from 192.168.1.21 dport 500 sport 500 Global (R) AG_NO_STATE *Mar 1 01:34:23.251: ISAKMP (0:3): phase 1 packet is a duplicate of a previous packet. *Mar 1 01:34:23.251: ISAKMP (0:3): retransmitting due to retransmit phase 1 *Mar 1 01:34:23.755: ISAKMP (0:3): retransmitting phase 1 AG_NO_STATE... *Mar 1 01:34:23.755: ISAKMP (0:3): incrementing error counter on sa, attempt 2 of 5: retransmit phase 1 *Mar 1 01:34:23.755: ISAKMP (0:3): retransmitting phase 1 AG_NO_STATE *Mar 1 01:34:23.755: ISAKMP (0:3): sending packet to 192.168.1.21 my_port 500 peer_port 500 (R) AG_NO_STATE *Mar 1 01:34:28.247: ISAKMP (0:3): received packet from 192.168.1.21 dport 500 sport 500 Global (R) AG_NO_STATE *Mar 1 01:34:28.247: ISAKMP (0:3): phase 1 packet is a duplicate of a previous packet. *Mar 1 01:34:28.247: ISAKMP (0:3): retransmitting due to retransmit phase 1 *Mar 1 01:34:28.247: ISAKMP (0:3): no outgoing phase 1 packet to retransmit. AG_NO_STATE *Mar 1 01:34:33.243: ISAKMP (0:3): received packet from 192.168.1.21 dport 500 sport 500 Global (R) AG_NO_STATE *Mar 1 01:34:33.247: ISAKMP (0:3): phase 1 packet is a duplicate of a previous packet. *Mar 1 01:34:33.247: ISAKMP (0:3): retransmitting due to retransmit phase 1 *Mar 1 01:34:33.247: ISAKMP (0:3): no outgoing phase 1 packet to retransmit. AG_NO_STATE RS4# RS4# RS4# *Mar 1 01:34:58.467: ISAKMP (0:2): purging SA., sa=82751534, delme=82751534 *Mar 1 01:34:58.471: ISAKMP (0:1): purging SA., sa=82D85FC8, delme=82D85FC8