15:29:14 -- Jul 16 12:28:45.155: ISAKMP (0): received packet from 85.132.120.4 dport 500 sport 500 Global (N) NEW SA 15:29:14 -- Jul 16 12:28:45.155: ISAKMP: Created a peer struct for 85.132.120.4, peer port 500 15:29:14 -- Jul 16 12:28:45.155: ISAKMP: New peer created peer = 0x69B3B244 peer_handle = 0x80072517 15:29:14 -- Jul 16 12:28:45.155: ISAKMP: Locking peer struct 0x69B3B244, refcount 1 for crypto_isakmp_process_block 15:29:14 -- Jul 16 12:28:45.155: ISAKMP: local port 500, remote port 500 15:29:14 -- Jul 16 12:28:45.155: ISAKMP: Find a dup sa in the avl tree during calling isadb_insert sa = 69DD4634 15:29:14 -- Jul 16 12:28:45.155: ISAKMP:(0):Input = IKE_MESG_FROM_PEER, IKE_MM_EXCH 15:29:14 -- Jul 16 12:28:45.155: ISAKMP:(0):Old State = IKE_READY New State = IKE_R_MM1 15:29:14 -- 15:29:14 -- Jul 16 12:28:45.155: ISAKMP:(0): processing SA payload. message ID = 0 15:29:14 -- Jul 16 12:28:45.155: ISAKMP:(0): processing vendor id payload 15:29:14 -- Jul 16 12:28:45.155: ISAKMP:(0): vendor ID seems Unity/DPD but major 69 mismatch 15:29:14 -- Jul 16 12:28:45.155: ISAKMP (0): vendor ID is NAT-T RFC 3947 15:29:14 -- Jul 16 12:28:45.155: ISAKMP:(0): processing vendor id payload 15:29:14 -- Jul 16 12:28:45.155: ISAKMP:(0): vendor ID seems Unity/DPD but major 245 mismatch 15:29:14 -- Jul 16 12:28:45.155: ISAKMP (0): vendor ID is NAT-T v7 15:29:14 -- Jul 16 12:28:45.155: ISAKMP:(0): processing vendor id payload 15:29:14 -- Jul 16 12:28:45.155: ISAKMP:(0): vendor ID seems Unity/DPD but major 157 mismatch 15:29:14 -- Jul 16 12:28:45.155: ISAKMP:(0): vendor ID is NAT-T v3 15:29:14 -- Jul 16 12:28:45.155: ISAKMP:(0): processing vendor id payload 15:29:14 -- Jul 16 12:28:45.155: ISAKMP:(0): vendor ID seems Unity/DPD but major 123 mismatch 15:29:14 -- Jul 16 12:28:45.155: ISAKMP:(0): vendor ID is NAT-T v2 15:29:14 -- Jul 16 12:28:45.155: ISAKMP:(0):found peer pre-shared key matching 85.132.120.4 15:29:14 -- Jul 16 12:28:45.155: ISAKMP:(0): local preshared key found 15:29:14 -- Jul 16 12:28:45.155: ISAKMP : Scanning profiles for xauth ... 15:29:14 -- Jul 16 12:28:45.155: ISAKMP:(0):Checking ISAKMP transform 1 against priority 1 policy 15:29:14 -- Jul 16 12:28:45.155: ISAKMP: encryption AES-CBC 15:29:14 -- Jul 16 12:28:45.155: ISAKMP: keylength of 256 15:29:14 -- Jul 16 12:28:45.155: ISAKMP: hash SHA 15:29:14 -- Jul 16 12:28:45.155: ISAKMP: default group 5 15:29:14 -- Jul 16 12:28:45.155: ISAKMP: auth pre-share 15:29:14 -- Jul 16 12:28:45.155: ISAKMP: life type in seconds 15:29:14 -- Jul 16 12:28:45.155: ISAKMP: life duration (VPI) of 0x0 0x1 0x51 0x80 15:29:14 -- Jul 16 12:28:45.155: ISAKMP:(0):Encryption algorithm offered does not match policy! 15:29:14 -- Jul 16 12:28:45.155: ISAKMP:(0):atts are not acceptable. Next payload is 3 15:29:14 -- Jul 16 12:28:45.155: ISAKMP:(0):Checking ISAKMP transform 2 against priority 1 policy 15:29:14 -- Jul 16 12:28:45.155: ISAKMP: encryption AES-CBC 15:29:14 -- Jul 16 12:28:45.155: ISAKMP: keylength of 256 15:29:14 -- Jul 16 12:28:45.155: ISAKMP: hash SHA 15:29:14 -- Jul 16 12:28:45.155: ISAKMP: default group 2 15:29:14 -- Jul 16 12:28:45.155: ISAKMP: auth pre-share 15:29:14 -- Jul 16 12:28:45.155: ISAKMP: life type in seconds 15:29:14 -- Jul 16 12:28:45.155: ISAKMP: life duration (VPI) of 0x0 0x1 0x51 0x80 15:29:14 -- Jul 16 12:28:45.155: ISAKMP:(0):Encryption algorithm offered does not match policy! 15:29:14 -- Jul 16 12:28:45.155: ISAKMP:(0):atts are not acceptable. Next payload is 3 15:29:14 -- Jul 16 12:28:45.155: ISAKMP:(0):Checking ISAKMP transform 3 against priority 1 policy 15:29:14 -- Jul 16 12:28:45.155: ISAKMP: encryption 3DES-CBC 15:29:14 -- Jul 16 12:28:45.155: ISAKMP: hash MD5 15:29:14 -- Jul 16 12:28:45.155: ISAKMP: default group 2 15:29:14 -- Jul 16 12:28:45.155: ISAKMP: auth pre-share 15:29:14 -- Jul 16 12:28:45.155: ISAKMP: life type in seconds 15:29:14 -- Jul 16 12:28:45.155: ISAKMP: life duration (VPI) of 0x0 0x1 0x51 0x80 15:29:14 -- Jul 16 12:28:45.155: ISAKMP:(0):Hash algorithm offered does not match policy! 15:29:14 -- Jul 16 12:28:45.155: ISAKMP:(0):atts are not acceptable. Next payload is 3 15:29:14 -- Jul 16 12:28:45.155: ISAKMP:(0):Checking ISAKMP transform 4 against priority 1 policy 15:29:14 -- Jul 16 12:28:45.155: ISAKMP: encryption 3DES-CBC 15:29:14 -- Jul 16 12:28:45.155: ISAKMP: hash SHA 15:29:14 -- Jul 16 12:28:45.155: ISAKMP: default group 2 15:29:14 -- Jul 16 12:28:45.155: ISAKMP: auth pre-share 15:29:14 -- Jul 16 12:28:45.155: ISAKMP: life type in seconds 15:29:14 -- Jul 16 12:28:45.155: ISAKMP: life duration (VPI) of 0x0 0x1 0x51 0x80 15:29:14 -- Jul 16 12:28:45.155: ISAKMP:(0):atts are acceptable. Next payload is 3 15:29:14 -- Jul 16 12:28:45.155: ISAKMP:(0):Acceptable atts:actual life: 0 15:29:14 -- Jul 16 12:28:45.155: ISAKMP:(0):Acceptable atts:life: 0 15:29:14 -- Jul 16 12:28:45.155: ISAKMP:(0):Fill atts in sa vpi_length:4 15:29:14 -- Jul 16 12:28:45.155: ISAKMP:(0):Fill atts in sa life_in_seconds:86400 15:29:14 -- Jul 16 12:28:45.155: ISAKMP:(0):Returning Actual lifetime: 86400 15:29:14 -- Jul 16 12:28:45.155: ISAKMP:(0)::Started lifetime timer: 86400. 15:29:14 -- 15:29:14 -- Jul 16 12:28:45.159: ISAKMP:(0): processing vendor id payload 15:29:14 -- Jul 16 12:28:45.159: ISAKMP:(0): vendor ID seems Unity/DPD but major 69 mismatch 15:29:14 -- Jul 16 12:28:45.159: ISAKMP (0): vendor ID is NAT-T RFC 3947 15:29:14 -- Jul 16 12:28:45.159: ISAKMP:(0): processing vendor id payload 15:29:14 -- Jul 16 12:28:45.159: ISAKMP:(0): vendor ID seems Unity/DPD but major 245 mismatch 15:29:14 -- Jul 16 12:28:45.159: ISAKMP (0): vendor ID is NAT-T v7 15:29:14 -- Jul 16 12:28:45.159: ISAKMP:(0): processing vendor id payload 15:29:14 -- Jul 16 12:28:45.159: ISAKMP:(0): vendor ID seems Unity/DPD but major 157 mismatch 15:29:14 -- Jul 16 12:28:45.159: ISAKMP:(0): vendor ID is NAT-T v3 15:29:14 -- Jul 16 12:28:45.159: ISAKMP:(0): processing vendor id payload 15:29:14 -- Jul 16 12:28:45.159: ISAKMP:(0): vendor ID seems Unity/DPD but major 123 mismatch 15:29:14 -- Jul 16 12:28:45.159: ISAKMP:(0): vendor ID is NAT-T v2 15:29:14 -- router# 15:29:14 -- Jul 16 12:28:45.159: ISAKMP:(0):Input = IKE_MESG_INTERNAL, IKE_PROCESS_MAIN_MODE 15:29:14 -- Jul 16 12:28:45.159: ISAKMP:(0):Old State = IKE_R_MM1 New State = IKE_R_MM1 15:29:14 -- 15:29:14 -- Jul 16 12:28:45.159: ISAKMP:(0): constructed NAT-T vendor-rfc3947 ID 15:29:14 -- Jul 16 12:28:45.159: ISAKMP:(0): sending packet to 85.132.120.4 my_port 500 peer_port 500 (R) MM_SA_SETUP 15:29:14 -- Jul 16 12:28:45.159: ISAKMP:(0):Sending an IKE IPv4 Packet. 15:29:14 -- Jul 16 12:28:45.159: ISAKMP:(0):Input = IKE_MESG_INTERNAL, IKE_PROCESS_COMPLETE 15:29:14 -- Jul 16 12:28:45.159: ISAKMP:(0):Old State = IKE_R_MM1 New State = IKE_R_MM2 15:29:14 -- Jul 16 12:29:02.931: ISAKMP: set new node 0 to QM_IDLE 15:29:14 -- Jul 16 12:29:02.931: ISAKMP:(0):SA is still budding. Attached new ipsec request to it. (local 213.79.112.134, remote 85.132.120.4) 15:29:14 -- Jul 16 12:29:02.931: ISAKMP: Error while processing SA request: Failed to initialize SA 15:29:14 -- Jul 16 12:29:02.931: ISAKMP: Error while processing KMI message 0, error 2. 15:29:14 -- Jul 16 12:29:02.931: ISAKMP:(0): retransmitting phase 1 MM_NO_STATE... 15:29:14 -- Jul 16 12:29:02.931: ISAKMP:(0):peer does not do paranoid keepalives. 15:29:14 -- 15:29:14 -- Jul 16 12:29:02.931: ISAKMP:(0):deleting SA reason "Death by retransmission P1" state (I) MM_NO_STATE (peer 85.132.120.4) 15:29:14 -- Jul 16 12:29:02.931: ISAKMP:(0):deleting SA reason "Death by retransmission P1" state (I) MM_NO_STATE (peer 85.132.120.4) 15:29:14 -- Jul 16 12:29:02.931: ISAKMP: Unlocking peer struct 0x69B3865C for isadb_mark_sa_deleted(), count 0 15:29:14 -- Jul 16 12:29:02.931: ISAKMP: Deleting peer node by peer_reap for 85.132.120.4: 69B3865C 15:29:14 -- Jul 16 12:29:02.931: ISAKMP:(0):deleting node 1681254143 error FALSE reason "IKE deleted" 15:29:14 -- Jul 16 12:29:02.931: ISAKMP:(0):deleting node -1640242010 error FALSE reason "IKE deleted" 15:29:14 -- Jul 16 12:29:02.931: ISAKMP:(0):deleting node 489776824 error FALSE reason "IKE deleted" 15:29:14 -- Jul 16 12:29:02.931: ISAKMP:(0):Input = IKE_MESG_INTERNAL, IKE_PHASE1_DEL 15:29:14 -- Jul 16 12:29:02.931: ISAKMP:(0):Old State = IKE_I_MM1 New State = IKE_DEST_SA 15:29:14 -- Jul 16 12:29:05.155: ISAKMP (0): received packet from 85.132.120.4 dport 500 sport 500 Global (R) MM_SA_SETUP 15:29:14 -- Jul 16 12:29:05.155: ISAKMP:(0): phase 1 packet is a duplicate of a previous packet. 15:29:14 -- Jul 16 12:29:05.155: ISAKMP:(0): retransmitting due to retransmit phase 1 15:29:14 -- Jul 16 12:29:05.655: ISAKMP:(0): retransmitting phase 1 MM_SA_SETUP... 15:29:14 -- Jul 16 12:29:05.655: ISAKMP (0): incrementing error counter on sa, attempt 2 of 5: retransmit phase 1 15:29:14 -- Jul 16 12:29:05.655: ISAKMP:(0): retransmitting phase 1 MM_SA_SETUP 15:29:14 -- Jul 16 12:29:05.655: ISAKMP:(0): sending packet to 85.132.120.4 my_port 500 peer_port 500 (R) MM_SA_SETUP 15:29:14 -- Jul 16 12:29:05.655: ISAKMP:(0):Sending an IKE IPv4 Packet.