1
18.1 Legacy Series / Re: Help Needed Please: IPsec VPN RoadWarrior config--now with a VPN Log
« on: September 24, 2018, 03:26:03 am »
I'm having the same problem with OPNsense 18.7.3-amd64. I followed the instructions per the documentation and my macOS client still can't connect. I also have an orange status icon. I tried to change the detail in my logs with no success even after reboot. The detail I do get is useless. Apparently I can establish Phase1, but don't have a clear picture of what is happening in Phase2. Not being able to get better detail in the logs is most upsetting. A close second is following instructions that are outdated. Here my log output:
Code: [Select]
Sep 23 18:22:41 charon: 12[KNL] fe80::1:1 appeared on igb3
Sep 23 18:22:41 charon: 01[KNL] fe80::1:1 disappeared from igb3
Sep 23 18:22:40 charon: 01[CFG] added configuration 'con1'
Sep 23 18:22:40 charon: 01[CFG] reusing virtual IP address pool 10.10.90.0/28
Sep 23 18:22:40 charon: 01[CFG] received stroke: add connection 'con1'
Sep 23 18:22:40 charon: 12[CFG] deleted connection 'con1'
Sep 23 18:22:40 charon: 12[CFG] received stroke: delete connection 'con1'
Sep 23 18:22:40 charon: 01[CFG] rereading crls from '/usr/local/etc/ipsec.d/crls'
Sep 23 18:22:40 charon: 01[CFG] rereading attribute certificates from '/usr/local/etc/ipsec.d/acerts'
Sep 23 18:22:40 charon: 01[CFG] rereading ocsp signer certificates from '/usr/local/etc/ipsec.d/ocspcerts'
Sep 23 18:22:40 charon: 01[CFG] rereading aa certificates from '/usr/local/etc/ipsec.d/aacerts'
Sep 23 18:22:40 charon: 01[CFG] rereading ca certificates from '/usr/local/etc/ipsec.d/cacerts'
Sep 23 18:22:40 charon: 01[CFG] loaded IKE secret for XXX.XXX.XXX.XXX %any
Sep 23 18:22:40 charon: 01[CFG] loading secrets from '/usr/local/etc/ipsec.secrets'
Sep 23 18:22:40 charon: 01[CFG] rereading secrets