Ohhh Mann.... Völlig übersehen. Das sind Dinge, die ich nie anfasse. Daher schaue ich da nie nach. Die hat ein anderer mal eingerichtet.
Vielen lieben Dank!
Vielen lieben Dank!
This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.
Show posts MenuQuote***GOT REQUEST TO AUDIT HEALTH***
Currently running OPNsense 23.7.4 at Wed Jan 31 14:59:03 +03 2024
>>> Check installed kernel version
Version 23.7.10 is correct.
>>> Check for missing or altered kernel files
No problems detected.
>>> Check installed base version
Version 23.7.10 is correct.
>>> Check for missing or altered base files
No problems detected.
>>> Check installed repositories
OPNsense
>>> Check installed plugins
os-clamav 1.8
os-nextcloud-backup 1.0_1
>>> Check locked packages
opnsense-23.7.4
>>> Check for missing package dependencies
Checking all packages: .......... done
>>> Check for missing or altered package files
Checking all packages: .......... done
>>> Check for core packages consistency
Core package "opnsense" has 68 dependencies to check.
Checking packages: .......................
opnsense-23.7.4 version mismatch, expected 23.7.12_5
Checking packages: .............................................. done
***DONE***
Quote***GOT REQUEST TO CHECK FOR UPDATES***Keine Aktualisierungen auf dem ausgewählten Spiegelserver vorhanden.
Currently running OPNsense 23.7.4 at Wed Jan 31 15:01:46 +03 2024
Fetching changelog information, please wait... done
Updating OPNsense repository catalogue...
Fetching meta.conf: . done
Fetching packagesite.pkg: .......... done
Processing entries: .......... done
OPNsense repository update completed. 863 packages processed.
All repositories are up to date.
Checking integrity... done (0 conflicting)
Your packages are up to date.
Checking for upgrades (50 candidates): .......... done
Processing candidates (50 candidates): . done
Checking integrity... done (0 conflicting)
Your packages are up to date.
***DONE***
Quote from: lidynia.sven on February 09, 2021, 08:26:06 PM
Hast du mal den Firewall log gecheckt?
Hast du nen Proxy eingerichtet oder sensei?
Gruß
Sven
Gesendet von meinem SM-N960F mit Tapatalk pro
Quote from: micneu on February 09, 2021, 06:21:41 PM
bitte mal einen netzwerkplan, das hilf mir immer um das problem zu verstehen, mir hilft ein grafischer netzwerkplan
config loaded for site 'XXXX'
attached to key daemon ...
peer configured
iskamp proposal configured
esp proposal configured
client configured
local id configured
remote id configured
pre-shared key configured
bringing up tunnel ...
negotiation timout occurred
tunnel disabled
detached from key daemon
Quote
charon: 16[IKE] <con1|3> received INVALID_ID_INFORMATION error notify
charon: 16[ENC] <con1|3> parsed INFORMATIONAL_V1 request 934488822 [ HASH N(INVAL_ID) ]
vpncfg {
connections {
enabled = yes;
conn_type = conntype_lan;
name = "Site-Site-VPN";
always_renew = yes;
reject_not_encrypted = no;
dont_filter_netbios = yes;
localip = 0.0.0.0;
local_virtualip = 0.0.0.0;
remoteip = 0.0.0.0;
remote_virtualip = 0.0.0.0;
remotehostname = "/////DYNDNS DER OPNSENSE/////";
localid {
fqdn = "/////DYNDNS DER FRITZE/////";
}
remoteid {
fqdn = "/////DYNDNS DER OPNSENSE/////";
}
mode = phase1_mode_idp;
phase1ss = "dh14/aes/sha";
keytype = connkeytype_pre_shared;
key = "/////32-STELLIGER-KEY/////";
cert_do_server_auth = no;
use_nat_t = yes;
use_xauth = no;
use_cfgmode = no;
phase2localid {
ipnet {
ipaddr = /////PRIVATES NETZ HINTER FRITZE/////;
mask = 255.255.255.0;
}
}
phase2remoteid {
ipnet {
ipaddr = /////PRIVATES NETZ HINTER OPNSENSE/////;
mask = 255.255.255.0;
}
}
phase2ss = "esp-aes256-3des-sha/ah-no/comp-lzs-no/pfs";
accesslist = "permit ip any /////PRIVATES NETZ HINTER OPNSENSE///// 255.255.255.0";
}
ike_forward_rules = "udp 0.0.0.0:500 0.0.0.0:500",
"udp 0.0.0.0:4500 0.0.0.0:4500";
}
Anschlussart: standard
Schlüsselaustauschversion: V1
Internetprotokoll: IPv4
Schnittstelle: WAN
Ferner Gateway: ///DynDNS der Fritzbox///
Dynamic gateway: aktiv
Beschreibung: Site-Site-VPN
Phase 1
Authentifizierungsmethode: Mutual PSK
Bestimmungsmodus: Main
Meine Kennung: Meine IP-Adresse
Peer-Identifizierer: Bedeutender Name + ///DynDNS der Fritzbox///
Pre-Shared-Schlüssel: ///PSK///
Verschlüsselungsalgorythmus: AES 256
Hashalgorythmus: SHA1
DH Schlüsselgruppe: 14
Lebenszeit: 28800
Install policy: aktiv
ReKey deaktivieren: inaktiv
Reauth deaktivieren: inaktiv
Tunnelisolation: inaktiv
NAT Traversal: Aktivieren
MOBIKE deaktivieren: inaktiv
Dead Peer Detection: aktiv - 10 - 5
Phase 2
Modus: Tunnel IPv4
Typ lokales Netzwerk: Privat Subnetz
Typ entferntes Netzwerk: ///NETZ HINTER FRITZBOX///
Protokoll: ESP
Verschlüsselungsalgorythmen: AES 256
Hashalgorythmus: SHA1
PFS Schlüsselgruppe: 14
Lebenszeit: 28800