Help with Symantec VPN 100 Log Entry

Nov 03, 2006 2 Replies

Hi,



Can someone please explain the following log entries mean?


11/03/2006 09:29:23.05 EK - Initiating IKE Aggressive Mode
11/03/2006 09:29:23.35 EK - STATE_AGGR_I1: initiate
11/03/2006 09:29:24.65 EK - STATE_AGGR_I2 sent AI2, ISAKMP SA established
11/03/2006 09:29:24.65 EK - Doing Quick Mode with 82.40.238.90 "EK"


11/03/2006 09:29:24.65 EK - initiating Quick Mode



11/03/2006 09:29:25.00 EK - STATE_QUICK_I1: initiate
11/03/2006 09:29:26.30 EK - STATE_QUICK_I2 sent QI2, IPsec SA established


11/03/2006 10:28:24.30 EK - !!!: replacing stale ISAKMP SA



11/03/2006 10:28:24.30 EK - Initiating IKE Aggressive Mode
11/03/2006 10:28:24.60 EK - STATE_AGGR_I1: initiate
11/03/2006 10:28:25.95 EK - STATE_AGGR_I2 sent AI2, ISAKMP SA established
11/03/2006 10:29:25.95 EK - !!!: ISAKMP SA expired (superseded by #3)


I understand that the entries up to 09:29 suggest the tunnel has been created, but it's the messages after this I don't understand.



Cheers, Bob



bobbai schrieb:

I think, the IKE Lifetime is set to 1 hour.

Mirko

Thanks for the reply.

The SA lifetime is set to 480 minutes (8 hours).

Any other ideas?

Bob

Join the Discussion

Have something to add? Share your thoughts — no account required.

Didn't find your answer?

Ask the community — no account required