To zip: díky za nápad, ale zjišťuji, že i tak mám problémy. Prostě začátečník.
Ačkoliv mám nastaveno, myslím vše dle návodů, stejně mi tunel nechodí a háže mi chybu.
-- CUT strabna v praci ---
06 ipsec,debug,packet resend phase1 packet 915ec2368dc84065
06 ipsec,debug,packet getsockmyaddr 192.168.19.170
06 ipsec,debug,packet 104 bytes from 192.168.19.170 to 192.168.19.169
06 ipsec,debug,packet sockname 192.168.19.170
06 ipsec,debug,packet send packet from 192.168.19.170
06 ipsec,debug,packet send packet to 192.168.19.169
06 ipsec,debug,packet src4 192.168.19.170
06 ipsec,debug,packet dst4 192.168.19.169
06 ipsec,debug,packet 1 times of 104 bytes message will be sent to 192.168.19.169
06 ipsec,debug,packet 915ec236 8dc84065 00000000 00000000 01100200 00000000 00000068 0d000038
06 ipsec,debug,packet 00000001 00000001 0000002c 01010001 00000024 01010000 800b0001 000c0004
06 ipsec,debug,packet 00015180 80010005 80030001 80020002 80040002 00000014 afcad713 68a1f1c9
06 ipsec,debug,packet 6b8696fc 77570100
06 ipsec,debug,packet resend phase1 packet 915ec2368dc84065
06 ipsec,debug phase2 negotiation failed due to time up waiting for phase1. ESP 192.168.19.169->192.168.19.170
06 ipsec,debug delete phase 2 handler.
--- CUT END ---
---- CUT Strana doma -----
...08 ipsec,debug,packet Compared: DB
08 ipsec,debug,packet (lifetime = 86400)
08 ipsec,debug,packet (lifebyte = 0)
08 ipsec,debug,packet enctype = 3DES-CBC-CBC
08 ipsec,debug,packet (encklen = 0)
08 ipsec,debug,packet hashtype = MD5
08 ipsec,debug,packet authmethod = pre-shared key-shared key
08 ipsec,debug,packet dh_group = 1024-bit MODP group-bit MODP group
08 ipsec,debug,packet type=Life Type, flag=0x8000, lorv=seconds
08 ipsec,debug,packet type=Life Duration, flag=0x0000, lorv=4
08 ipsec,debug,packet type=Encryption Algorithm, flag=0x8000, lorv=3DES-C
08 ipsec,debug,packet type=Authentication Method, flag=0x8000, lorv=pre-s
key
08 ipsec,debug,packet type=Hash Algorithm, flag=0x8000, lorv=SHA
08 ipsec,debug,packet type=Group Description, flag=0x8000, lorv=1024-bit
group
08 ipsec,debug rejected hashtype: DB(prop#1#1)(prop#1#1) =
SHA
08 ipsec,debug no suitable proposal found.
08 ipsec,debug failed to get valid proposal.
---- CUT END -----
Přitom na obou stranách je IPSec Proposal nastaveno stejně.
Našla by se nějaká dobrá duše a odladila se mnou tento příklad? Pořádně se v tom plácám.