1
Virtual private networks / IKEv1 from Opnsense to Sonicwall
« on: November 08, 2024, 07:28:14 am »
i have currently an unstable IPSec Side2Side VPN whitch drops the connection multible times a day...
(Only if i use The new Connections Tab, The legacy works ...)
OPNsense 24.7.5_3-amd64
does someone have me a hint?
(Only if i use The new Connections Tab, The legacy works ...)
OPNsense 24.7.5_3-amd64
Code: [Select]
2024-11-08T07:06:58 Informational charon 09[ENC] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> parsed INFORMATIONAL_V1 request 777691194 [ HASH N(DPD) ]
2024-11-08T07:06:58 Informational charon 09[NET] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> received packet: from 1.2.3.4[500] to 9.8.7.6[500] (108 bytes)
2024-11-08T07:05:56 Informational charon 14[NET] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> sending packet: from 9.8.7.6[500] to 1.2.3.4[500] (108 bytes)
2024-11-08T07:05:56 Informational charon 14[ENC] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> generating INFORMATIONAL_V1 request 2195210381 [ HASH N(DPD_ACK) ]
2024-11-08T07:05:56 Informational charon 14[ENC] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> parsed INFORMATIONAL_V1 request 4103523366 [ HASH N(DPD) ]
2024-11-08T07:05:56 Informational charon 14[NET] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> received packet: from 1.2.3.4[500] to 9.8.7.6[500] (108 bytes)
2024-11-08T07:04:52 Informational charon 13[IKE] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|69> received NO_PROPOSAL_CHOSEN error notify
2024-11-08T07:04:52 Informational charon 13[ENC] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|69> parsed INFORMATIONAL_V1 request 0 [ N(NO_PROP) ]
2024-11-08T07:04:52 Informational charon 13[NET] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|69> received packet: from 1.2.3.4[500] to 9.8.7.6[500] (92 bytes)
2024-11-08T07:04:52 Informational charon 13[NET] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> sending packet: from 9.8.7.6[500] to 1.2.3.4[500] (204 bytes)
2024-11-08T07:04:52 Informational charon 13[ENC] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> generating ID_PROT request 0 [ SA V V V V V ]
2024-11-08T07:04:52 Informational charon 13[IKE] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> initiating Main Mode IKE_SA xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2[69] to 1.2.3.4
2024-11-08T06:54:12 Informational charon 10[IKE] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> CHILD_SA not found, ignored
2024-11-08T06:54:12 Informational charon 10[IKE] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> received DELETE for ESP CHILD_SA with SPI c9d78007
2024-11-08T06:54:12 Informational charon 10[IKE] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> closing CHILD_SA 1e40b98e-f586-4c02-9783-f132a3c5fd2b{349} with SPIs c9d78007_i (64089423 bytes) 22e87b7c_o (0 bytes) and TS 10.0.0.0/15 === 192.168.0.0/24
2024-11-08T06:54:12 Informational charon 10[IKE] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> received DELETE for ESP CHILD_SA with SPI 22e87b7c
2024-11-08T06:54:12 Informational charon 10[ENC] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> parsed INFORMATIONAL_V1 request 2650178932 [ HASH D ]
2024-11-08T06:54:12 Informational charon 10[NET] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> received packet: from 1.2.3.4[500] to 9.8.7.6[500] (92 bytes)
2024-11-08T06:54:02 Informational charon 13[NET] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> sending packet: from 9.8.7.6[500] to 1.2.3.4[500] (76 bytes)
2024-11-08T06:54:02 Informational charon 13[ENC] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> generating QUICK_MODE request 3395778535 [ HASH ]
2024-11-08T06:54:02 Informational charon 13[IKE] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> CHILD_SA 1e40b98e-f586-4c02-9783-f132a3c5fd2b{354} established with SPIs cfe6ef46_i 4c087b7c_o and TS 10.0.0.0/15 === 192.168.0.0/24
2024-11-08T06:54:02 Informational charon 13[CFG] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> selected proposal: ESP:AES_CBC_256/HMAC_SHA2_256_128/MODP_2048/NO_EXT_SEQ
2024-11-08T06:54:02 Informational charon 13[ENC] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> parsed QUICK_MODE response 3395778535 [ HASH SA No KE ID ID N((24576)) ]
2024-11-08T06:54:02 Informational charon 13[NET] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> received packet: from 1.2.3.4[500] to 9.8.7.6[500] (460 bytes)
2024-11-08T06:54:01 Informational charon 13[NET] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> sending packet: from 9.8.7.6[500] to 1.2.3.4[500] (460 bytes)
2024-11-08T06:54:01 Informational charon 13[ENC] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> generating QUICK_MODE request 3395778535 [ HASH SA No KE ID ID ]
2024-11-08T05:56:16 Informational charon 07[IKE] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> CHILD_SA not found, ignored
2024-11-08T05:56:16 Informational charon 07[IKE] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> received DELETE for ESP CHILD_SA with SPI c74bc301
2024-11-08T05:56:16 Informational charon 07[IKE] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> closing CHILD_SA 1e40b98e-f586-4c02-9783-f132a3c5fd2b{344} with SPIs c74bc301_i (493871 bytes) 87507b7c_o (0 bytes) and TS 10.0.0.0/15 === 192.168.0.0/24
2024-11-08T05:56:16 Informational charon 07[IKE] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> received DELETE for ESP CHILD_SA with SPI 87507b7c
2024-11-08T05:56:16 Informational charon 07[ENC] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> parsed INFORMATIONAL_V1 request 2517905844 [ HASH D ]
2024-11-08T05:56:16 Informational charon 07[NET] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> received packet: from 1.2.3.4[500] to 9.8.7.6[500] (92 bytes)
2024-11-08T05:56:05 Informational charon 07[NET] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> sending packet: from 9.8.7.6[500] to 1.2.3.4[500] (76 bytes)
2024-11-08T05:56:05 Informational charon 07[ENC] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> generating QUICK_MODE request 1167366992 [ HASH ]
2024-11-08T05:56:05 Informational charon 07[IKE] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> CHILD_SA 1e40b98e-f586-4c02-9783-f132a3c5fd2b{349} established with SPIs c9d78007_i 22e87b7c_o and TS 10.0.0.0/15 === 192.168.0.0/24
2024-11-08T05:56:05 Informational charon 07[CFG] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> selected proposal: ESP:AES_CBC_256/HMAC_SHA2_256_128/MODP_2048/NO_EXT_SEQ
2024-11-08T05:56:05 Informational charon 07[ENC] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> parsed QUICK_MODE response 1167366992 [ HASH SA No KE ID ID N((24576)) ]
2024-11-08T05:56:05 Informational charon 07[NET] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> received packet: from 1.2.3.4[500] to 9.8.7.6[500] (460 bytes)
2024-11-08T05:56:05 Informational charon 07[NET] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> sending packet: from 9.8.7.6[500] to 1.2.3.4[500] (460 bytes)
2024-11-08T05:56:05 Informational charon 07[ENC] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> generating QUICK_MODE request 1167366992 [ HASH SA No KE ID ID ]
2024-11-08T05:00:49 Informational charon 09[IKE] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> CHILD_SA not found, ignored
2024-11-08T05:00:49 Informational charon 09[IKE] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> received DELETE for ESP CHILD_SA with SPI c83dcbc4
2024-11-08T05:00:49 Informational charon 09[IKE] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> closing CHILD_SA 1e40b98e-f586-4c02-9783-f132a3c5fd2b{341} with SPIs c83dcbc4_i (519342 bytes) 9d287b7c_o (0 bytes) and TS 10.0.0.0/15 === 192.168.0.0/24
2024-11-08T05:00:49 Informational charon 09[IKE] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> received DELETE for ESP CHILD_SA with SPI 9d287b7c
2024-11-08T05:00:49 Informational charon 09[ENC] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> parsed INFORMATIONAL_V1 request 922369621 [ HASH D ]
2024-11-08T05:00:49 Informational charon 09[NET] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> received packet: from 1.2.3.4[500] to 9.8.7.6[500] (92 bytes)
2024-11-08T05:00:38 Informational charon 09[NET] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> sending packet: from 9.8.7.6[500] to 1.2.3.4[500] (76 bytes)
2024-11-08T05:00:38 Informational charon 09[ENC] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> generating QUICK_MODE request 2849869096 [ HASH ]
2024-11-08T05:00:38 Informational charon 09[IKE] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> CHILD_SA 1e40b98e-f586-4c02-9783-f132a3c5fd2b{344} established with SPIs c74bc301_i 87507b7c_o and TS 10.0.0.0/15 === 192.168.0.0/24
2024-11-08T05:00:38 Informational charon 09[CFG] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> selected proposal: ESP:AES_CBC_256/HMAC_SHA2_256_128/MODP_2048/NO_EXT_SEQ
2024-11-08T05:00:38 Informational charon 09[ENC] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> parsed QUICK_MODE response 2849869096 [ HASH SA No KE ID ID N((24576)) ]
2024-11-08T05:00:38 Informational charon 09[NET] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> received packet: from 1.2.3.4[500] to 9.8.7.6[500] (460 bytes)
2024-11-08T05:00:38 Informational charon 09[NET] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> sending packet: from 9.8.7.6[500] to 1.2.3.4[500] (460 bytes)
2024-11-08T05:00:38 Informational charon 09[ENC] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> generating QUICK_MODE request 2849869096 [ HASH SA No KE ID ID ]
2024-11-08T04:05:06 Informational charon 04[IKE] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> CHILD_SA not found, ignored
2024-11-08T04:05:06 Informational charon 04[IKE] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> received DELETE for ESP CHILD_SA with SPI cfcad067
2024-11-08T04:05:06 Informational charon 04[IKE] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> closing CHILD_SA 1e40b98e-f586-4c02-9783-f132a3c5fd2b{338} with SPIs cfcad067_i (496398 bytes) 32f87b7c_o (0 bytes) and TS 10.0.0.0/15 === 192.168.0.0/24
2024-11-08T04:05:06 Informational charon 04[IKE] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> received DELETE for ESP CHILD_SA with SPI 32f87b7c
2024-11-08T04:05:06 Informational charon 04[ENC] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> parsed INFORMATIONAL_V1 request 2509887601 [ HASH D ]
2024-11-08T04:05:06 Informational charon 04[NET] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> received packet: from 1.2.3.4[500] to 9.8.7.6[500] (92 bytes)
2024-11-08T04:04:55 Informational charon 08[NET] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> sending packet: from 9.8.7.6[500] to 1.2.3.4[500] (76 bytes)
2024-11-08T04:04:55 Informational charon 08[ENC] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> generating QUICK_MODE request 2009410859 [ HASH ]
2024-11-08T04:04:55 Informational charon 08[IKE] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> CHILD_SA 1e40b98e-f586-4c02-9783-f132a3c5fd2b{341} established with SPIs c83dcbc4_i 9d287b7c_o and TS 10.0.0.0/15 === 192.168.0.0/24
2024-11-08T04:04:55 Informational charon 08[CFG] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> selected proposal: ESP:AES_CBC_256/HMAC_SHA2_256_128/MODP_2048/NO_EXT_SEQ
2024-11-08T04:04:55 Informational charon 08[ENC] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> parsed QUICK_MODE response 2009410859 [ HASH SA No KE ID ID N((24576)) ]
2024-11-08T04:04:55 Informational charon 08[NET] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> received packet: from 1.2.3.4[500] to 9.8.7.6[500] (460 bytes)
2024-11-08T04:04:55 Informational charon 08[NET] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> sending packet: from 9.8.7.6[500] to 1.2.3.4[500] (460 bytes)
2024-11-08T04:04:55 Informational charon 08[ENC] <xxxxxxxxx-xxxxx-xxxx-xxxx-xxxxxxxx3a2|67> generating QUICK_MODE request 2009410859 [ HASH SA No KE ID ID ]
does someone have me a hint?