OSX 10.6 Cisco IPSEC 奇怪的行为

OSX 10.6 Cisco IPSEC 奇怪的行为

我正在尝试通过 DSL 互联网连接到我公司的 Cisco IPSEC VPN。我成功地使用 Cisco VPN 客户端连接,现在由于许可问题,我正尝试切换到 OSX 10.6 本机客户端。

问题是连接失败并出现一个包含以下消息的对话框:

The negotiation with the VPN server failed. Verify the server address and try reconnecting.

我检查了日志:

Jun 29 13:10:39 racoon[4551]: Connecting.
Jun 29 13:10:39 racoon[4551]: IKE Packet: transmit success. (Initiator, Aggressive-Mode message 1).
Jun 29 13:10:39 racoon[4551]: IKEv1 Phase1 AUTH: success. (Initiator, Aggressive-Mode Message 2).
Jun 29 13:10:39 racoon[4551]: IKE Packet: receive success. (Initiator, Aggressive-Mode message 2).
Jun 29 13:10:39 racoon[4551]: IKEv1 Phase1 Initiator: success. (Initiator, Aggressive-Mode).
Jun 29 13:10:39 racoon[4551]: IKE Packet: transmit success. (Initiator, Aggressive-Mode message 3).
Jun 29 13:10:42 racoon[4551]: IKE Packet: transmit success. (Mode-Config message).
Jun 29 13:10:42 racoon[4551]: IKEv1 XAUTH: success. (XAUTH Status is OK).
Jun 29 13:10:42 racoon[4551]: IKE Packet: transmit success. (Mode-Config message).
Jun 29 13:10:42 racoon[4551]: IKEv1 Config: retransmited. (Mode-Config retransmit).
Jun 29 13:10:42 racoon[4551]: IKE Packet: receive success. (MODE-Config).
Jun 29 13:10:42 configd[19]: event_callback: Address added. previous interface setting (name: en1, address: 192.168.1.107), current interface setting (name: u92.168.54.147, subnet: 255.255.255.0, destination: 192.168.54.147).
Jun 29 13:10:42 configd[19]: network configuration changed.
Jun 29 13:10:42 vmnet-bridge[111]: Dynamic store changed
Jun 29 13:10:42 named[62]: not listening on any interfaces
Jun 29 13:10:58: --- last message repeated 1 time ---
Jun 29 13:10:58 configd[19]: SCNCController: Disconnecting. (Connection tried to negotiate for, 16 seconds).
Jun 29 13:10:58 racoon[4551]: IKE Packet: transmit success. (Information message).
Jun 29 13:10:58 racoon[4551]: IKEv1 Information-Notice: transmit success. (Delete ISAKMP-SA).
Jun 29 13:10:58 racoon[4551]: Disconnecting. (Connection tried to negotiate for, 19.113382 seconds).
Jun 29 13:10:58 named[62]: not listening on any interfaces
Jun 29 13:10:58 vmnet-bridge[111]: Dynamic store changed
Jun 29 13:10:58 named[62]: not listening on any interfaces
Jun 29 13:10:58 configd[19]: network configuration changed.

然后我打开终端,开始对 VPN 后面的服务器进行 ping,然后尝试再次连接。现在连接正常!本次记录:

Jun 29 13:46:53 racoon[8136]: Connecting.
Jun 29 13:46:53 racoon[8136]: IKE Packet: transmit success. (Initiator, Aggressive-Mode message 1).
Jun 29 13:46:53 racoon[8136]: IKEv1 Phase1 AUTH: success. (Initiator, Aggressive-Mode Message 2).
Jun 29 13:46:53 racoon[8136]: IKE Packet: receive success. (Initiator, Aggressive-Mode message 2).
Jun 29 13:46:53 racoon[8136]: IKEv1 Phase1 Initiator: success. (Initiator, Aggressive-Mode).
Jun 29 13:46:53 racoon[8136]: IKE Packet: transmit success. (Initiator, Aggressive-Mode message 3).
Jun 29 13:46:56 racoon[8136]: IKE Packet: transmit success. (Mode-Config message).
Jun 29 13:46:56 racoon[8136]: IKEv1 XAUTH: success. (XAUTH Status is OK).
Jun 29 13:46:56 racoon[8136]: IKE Packet: transmit success. (Mode-Config message).
Jun 29 13:46:56 racoon[8136]: IKEv1 Config: retransmited. (Mode-Config retransmit).
Jun 29 13:46:56 racoon[8136]: IKE Packet: receive success. (MODE-Config).
Jun 29 13:46:56 configd[19]: event_callback: Address added. previous interface setting (name: en1, address: 192.168.1.107), current interface settinaddress: 192.168.54.149, subnet: 255.255.255.0, destination: 192.168.54.149).
Jun 29 13:46:56 vmnet-bridge[111]: Dynamic store changed
Jun 29 13:46:56 named[62]: not listening on any interfaces
Jun 29 13:46:56 configd[19]: network configuration changed.
Jun 29 13:46:56 named[62]: not listening on any interfaces
Jun 29 13:46:56 racoon[8136]: IKE Packet: transmit success. (Initiator, Quick-Mode message 1).
Jun 29 13:46:56 racoon[8136]: IKE Packet: receive success. (Initiator, Quick-Mode message 2).
Jun 29 13:46:56 racoon[8136]: IKE Packet: transmit success. (Initiator, Quick-Mode message 3).
Jun 29 13:46:56 racoon[8136]: IKEv1 Phase2 Initiator: success. (Initiator, Quick-Mode).
Jun 29 13:46:56 racoon[8136]: Connected.
Jun 29 13:46:56 configd[19]: SCNCController: Connected.

我测试了几次,它的表现始终一样。有什么魔法呢?

答案1

在 OSX 10.7 中没有发现此问题,因此如果有人遇到此问题 — — 只需更新到 Lion 即可:)

相关内容