¿Cómo puedo saber cuándo se completó IPSEC Fase 2 con Openswan?

4

Cuando abro una conexión usando openswan, obtengo el siguiente resultado pero no veo ningún tráfico ESP a través de los puertos 50, 500 o 4500.

# ipsec auto --up globacom-vpn
104 "globacom-vpn" #44: STATE_MAIN_I1: initiate
003 "globacom-vpn" #44: received Vendor ID payload [draft-ietf-ipsec-nat-t-ike-03] method set to=108
106 "globacom-vpn" #44: STATE_MAIN_I2: sent MI2, expecting MR2
003 "globacom-vpn" #44: received Vendor ID payload [Cisco-Unity]
003 "globacom-vpn" #44: received Vendor ID payload [Dead Peer Detection]
003 "globacom-vpn" #44: ignoring unknown Vendor ID payload [607de1f3f9ce64c53c6ae5e6d2ef9f6a]
003 "globacom-vpn" #44: received Vendor ID payload [XAUTH]
003 "globacom-vpn" #44: NAT-Traversal: Result using draft-ietf-ipsec-nat-t-ike-02/03: no NAT detected
108 "globacom-vpn" #44: STATE_MAIN_I3: sent MI3, expecting MR3
004 "globacom-vpn" #44: STATE_MAIN_I4: ISAKMP SA established {auth=OAKLEY_PRESHARED_KEY cipher=oakley_3des_cbc_192 prf=oakley_sha group=modp1024}
117 "globacom-vpn" #45: STATE_QUICK_I1: initiate
003 "globacom-vpn" #45: ignoring informational payload, type IPSEC_RESPONDER_LIFETIME msgid=38752b6f
004 "globacom-vpn" #45: STATE_QUICK_I2: sent QI2, IPsec SA established tunnel mode {ESP=>0x4ca8129b <0xfc055e21 xfrm=3DES_0-HMAC_SHA1 NATOA=none NATD=none DPD=enabled}
    
pregunta Oladipo Olasemo 11.02.2016 - 17:47
fuente

0 respuestas

Lea otras preguntas en las etiquetas