I am trying to set up L2TP/IPSec client on СentOS 7. The connection establishes, but the traffic does not go and it breaks immediately. On the other side everything is fine, since from Windows the connection with the same parameters works fine. Also, my router is not to blame, because the Windows machine is on the same network as the CentOS machine. What is the matter, can not understand. Help is needed!
All the settings I do according to the instructions from the service provider (one-to-one configuration): http://vpninfo.uz.gov.ua/instructions/l ... suse/13.2/
In my logs, the disconnection occurs after 4 attempts to send keep-alive packets: "Maximum retries exceeded for tunnel 19104. Closing."
The providers’s server log is similar: "IKE lost contact with remote peer, deleting connection (keepalive type: DPD)"
Here is the full my log (195.149.70.70 - is the provaider's IP):
Code: Select all
Mar 05 14:49:01 centos.localdomain charon[13114]: 00[DMN] Starting IKE charon daemon (strongSwan 5.7.2, Linux 3.10.0-957.el7.x86_64, x86_64)
Mar 05 14:49:01 centos.localdomain charon[13114]: 00[CFG] PKCS11 module '<name>' lacks library path
Mar 05 14:49:01 centos.localdomain charon[13114]: 00[LIB] openssl FIPS mode(2) - enabled
Mar 05 14:49:01 centos.localdomain charon[13114]: 00[CFG] loading ca certificates from '/etc/strongswan/ipsec.d/cacerts'
Mar 05 14:49:01 centos.localdomain charon[13114]: 00[CFG] loading aa certificates from '/etc/strongswan/ipsec.d/aacerts'
Mar 05 14:49:01 centos.localdomain charon[13114]: 00[CFG] loading ocsp signer certificates from '/etc/strongswan/ipsec.d/ocspcerts'
Mar 05 14:49:01 centos.localdomain charon[13114]: 00[CFG] loading attribute certificates from '/etc/strongswan/ipsec.d/acerts'
Mar 05 14:49:01 centos.localdomain charon[13114]: 00[CFG] loading crls from '/etc/strongswan/ipsec.d/crls'
Mar 05 14:49:01 centos.localdomain charon[13114]: 00[CFG] loading secrets from '/etc/strongswan/ipsec.secrets'
Mar 05 14:49:01 centos.localdomain charon[13114]: 00[CFG] loaded IKE secret for 195.149.70.70
Mar 05 14:49:01 centos.localdomain charon[13114]: 00[CFG] opening triplet file /etc/strongswan/ipsec.d/triplets.dat failed: No such file or directory
Mar 05 14:49:01 centos.localdomain charon[13114]: 00[CFG] loaded 0 RADIUS server configurations
Mar 05 14:49:01 centos.localdomain charon[13114]: 00[CFG] HA config misses local/remote address
Mar 05 14:49:01 centos.localdomain charon[13114]: 00[CFG] no script for ext-auth script defined, disabled
Mar 05 14:49:01 centos.localdomain charon[13114]: 00[LIB] loaded plugins: charon pkcs11 tpm aesni aes des rc2 sha2 sha1 md4 md5 mgf1 random nonce x509 revocation constraints acert pubkey pkcs1 pkcs7 pkcs8 pkcs12 pgp dnskey sshkey pem openssl gcrypt fips-prf gmp curve25519 chapoly xcbc cmac hmac ctr ccm gcm curl attr kernel-netlink resolve socket-default farp stroke vici updown eap-identity eap-sim eap-aka eap-aka-3gpp eap-aka-3gpp2 eap-md5 eap-gtc eap-mschapv2 eap-dynamic eap-radius eap-tls eap-ttls eap-peap xauth-generic xauth-eap xauth-pam xauth-noauth dhcp led duplicheck counters
Mar 05 14:49:01 centos.localdomain charon[13114]: 00[JOB] spawning 16 worker threads
Mar 05 14:49:01 centos.localdomain ipsec_starter[13113]: charon (13114) started after 60 ms
Mar 05 14:49:01 centos.localdomain charon[13114]: 05[CFG] received stroke: add connection 'vpn-uz'
Mar 05 14:49:01 centos.localdomain charon[13114]: 05[CFG] added configuration 'vpn-uz'
Mar 05 14:49:01 centos.localdomain charon[13114]: 07[CFG] received stroke: initiate 'vpn-uz'
Mar 05 14:49:01 centos.localdomain charon[13114]: 07[IKE] initiating Main Mode IKE_SA vpn-uz[1] to 195.149.70.70
Mar 05 14:49:01 centos.localdomain charon[13114]: 07[IKE] initiating Main Mode IKE_SA vpn-uz[1] to 195.149.70.70
Mar 05 14:49:01 centos.localdomain charon[13114]: 07[ENC] generating ID_PROT request 0 [ SA V V V V V ]
Mar 05 14:49:01 centos.localdomain charon[13114]: 07[NET] sending packet: from 10.1.1.99[500] to 195.149.70.70[500] (240 bytes)
Mar 05 14:49:01 centos.localdomain charon[13114]: 09[NET] received packet: from 195.149.70.70[500] to 10.1.1.99[500] (128 bytes)
Mar 05 14:49:01 centos.localdomain charon[13114]: 09[ENC] parsed ID_PROT response 0 [ SA V V ]
Mar 05 14:49:01 centos.localdomain charon[13114]: 09[IKE] received NAT-T (RFC 3947) vendor ID
Mar 05 14:49:01 centos.localdomain charon[13114]: 09[IKE] received FRAGMENTATION vendor ID
Mar 05 14:49:01 centos.localdomain charon[13114]: 09[CFG] selected proposal: IKE:AES_CBC_128/HMAC_SHA1_96/PRF_HMAC_SHA1/MODP_1024
Mar 05 14:49:01 centos.localdomain charon[13114]: 09[ENC] generating ID_PROT request 0 [ KE No NAT-D NAT-D ]
Mar 05 14:49:01 centos.localdomain charon[13114]: 09[NET] sending packet: from 10.1.1.99[500] to 195.149.70.70[500] (244 bytes)
Mar 05 14:49:01 centos.localdomain charon[13114]: 10[NET] received packet: from 195.149.70.70[500] to 10.1.1.99[500] (304 bytes)
Mar 05 14:49:01 centos.localdomain charon[13114]: 10[ENC] parsed ID_PROT response 0 [ KE No V V V V NAT-D NAT-D ]
Mar 05 14:49:01 centos.localdomain charon[13114]: 10[IKE] received Cisco Unity vendor ID
Mar 05 14:49:01 centos.localdomain charon[13114]: 10[IKE] received XAuth vendor ID
Mar 05 14:49:01 centos.localdomain charon[13114]: 10[ENC] received unknown vendor ID: 9e:a3:1f:5c:29:95:06:fb:d6:be:3d:4f:93:af:cf:88
Mar 05 14:49:01 centos.localdomain charon[13114]: 10[ENC] received unknown vendor ID: 1f:07:f7:0e:aa:65:14:d3:b0:fa:96:54:2a:50:01:00
Mar 05 14:49:01 centos.localdomain charon[13114]: 10[IKE] local host is behind NAT, sending keep alives
Mar 05 14:49:01 centos.localdomain charon[13114]: 10[ENC] generating ID_PROT request 0 [ ID HASH N(INITIAL_CONTACT) ]
Mar 05 14:49:01 centos.localdomain charon[13114]: 10[NET] sending packet: from 10.1.1.99[4500] to 195.149.70.70[4500] (108 bytes)
Mar 05 14:49:01 centos.localdomain charon[13114]: 11[NET] received packet: from 195.149.70.70[4500] to 10.1.1.99[4500] (92 bytes)
Mar 05 14:49:01 centos.localdomain charon[13114]: 11[ENC] parsed ID_PROT response 0 [ ID HASH V ]
Mar 05 14:49:01 centos.localdomain charon[13114]: 11[IKE] received DPD vendor ID
Mar 05 14:49:01 centos.localdomain charon[13114]: 11[IKE] IKE_SA vpn-uz[1] established between 10.1.1.99[10.1.1.99]...195.149.70.70[195.149.70.70]
Mar 05 14:49:01 centos.localdomain charon[13114]: 11[IKE] IKE_SA vpn-uz[1] established between 10.1.1.99[10.1.1.99]...195.149.70.70[195.149.70.70]
Mar 05 14:49:01 centos.localdomain charon[13114]: 11[IKE] scheduling reauthentication in 9948s
Mar 05 14:49:01 centos.localdomain charon[13114]: 11[IKE] maximum IKE_SA lifetime 10488s
Mar 05 14:49:01 centos.localdomain charon[13114]: 11[ENC] generating QUICK_MODE request 285943041 [ HASH SA No ID ID NAT-OA NAT-OA ]
Mar 05 14:49:01 centos.localdomain charon[13114]: 11[NET] sending packet: from 10.1.1.99[4500] to 195.149.70.70[4500] (220 bytes)
Mar 05 14:49:01 centos.localdomain charon[13114]: 13[NET] received packet: from 195.149.70.70[4500] to 10.1.1.99[4500] (188 bytes)
Mar 05 14:49:01 centos.localdomain charon[13114]: 13[ENC] parsed QUICK_MODE response 285943041 [ HASH SA No ID ID NAT-OA NAT-OA ]
Mar 05 14:49:01 centos.localdomain charon[13114]: 13[CFG] selected proposal: ESP:AES_CBC_128/HMAC_SHA1_96/NO_EXT_SEQ
Mar 05 14:49:01 centos.localdomain charon[13114]: 13[IKE] CHILD_SA vpn-uz{1} established with SPIs c21c85e0_i 039295c3_o and TS 10.1.1.99/32[udp] === 195.149.70.70/32[udp/l2tp]
Mar 05 14:49:01 centos.localdomain charon[13114]: 13[IKE] CHILD_SA vpn-uz{1} established with SPIs c21c85e0_i 039295c3_o and TS 10.1.1.99/32[udp] === 195.149.70.70/32[udp/l2tp]
Mar 05 14:49:01 centos.localdomain vpn[13137]: + 195.149.70.70 195.149.70.70 -- 10.1.1.99
Mar 05 14:49:01 centos.localdomain charon[13114]: 13[ENC] generating QUICK_MODE request 285943041 [ HASH ]
Mar 05 14:49:01 centos.localdomain charon[13114]: 13[NET] sending packet: from 10.1.1.99[4500] to 195.149.70.70[4500] (60 bytes)
Mar 05 14:49:09 centos.localdomain xl2tpd[3928]: xl2tpd[3928]: magic_lac_dial: LAC vpn-uz not activexl2tpd[3928]: Connecting to host 195.149.70.70, port 1701
Mar 05 14:49:09 centos.localdomain xl2tpd[3928]: xl2tpd[3928]: Connection established to 195.149.70.70, 1701. Local: 19104, Remote: 61134 (ref=0/0).
Mar 05 14:49:09 centos.localdomain xl2tpd[3928]: xl2tpd[3928]: Calling on tunnel 19104
Mar 05 14:49:09 centos.localdomain xl2tpd[3928]: xl2tpd[3928]: Call established with 195.149.70.70, Local: 3220, Remote: 56436, Serial: 23 (ref=0/0)
Mar 05 14:49:09 centos.localdomain pppd[13138]: Plugin pppol2tp.so loaded.
Mar 05 14:49:09 centos.localdomain pppd[13138]: pppd 2.4.5 started by root, uid 0
Mar 05 14:49:09 centos.localdomain pppd[13138]: using channel 9
Mar 05 14:49:09 centos.localdomain pppd[13138]: Using interface ppp0
Mar 05 14:49:09 centos.localdomain pppd[13138]: Connect: ppp0 <-->
Mar 05 14:49:09 centos.localdomain pppd[13138]: Overriding mtu 1500 to 1400
Mar 05 14:49:09 centos.localdomain pppd[13138]: PPPoL2TP options: debugmask 0
Mar 05 14:49:09 centos.localdomain pppd[13138]: Overriding mru 1500 to mtu value 1400
Mar 05 14:49:09 centos.localdomain pppd[13138]: sent [LCP ConfReq id=0x1 <mru 1400> <asyncmap 0x0> <magic 0xef4a94e>]
Mar 05 14:49:09 centos.localdomain NetworkManager[3449]: <info> [1551790149.9643] manager: (ppp0): new Ppp device (/org/freedesktop/NetworkManager/Devices/11)
Mar 05 14:49:09 centos.localdomain pppd[13138]: rcvd [LCP ConfReq id=0x1 <auth chap MS-v2> <magic 0x7b1ceee0>]
Mar 05 14:49:09 centos.localdomain pppd[13138]: sent [LCP ConfAck id=0x1 <auth chap MS-v2> <magic 0x7b1ceee0>]
Mar 05 14:49:09 centos.localdomain pppd[13138]: rcvd [LCP ConfRej id=0x1 <mru 1400> <asyncmap 0x0>]
Mar 05 14:49:09 centos.localdomain pppd[13138]: sent [LCP ConfReq id=0x2 <magic 0xef4a94e>]
Mar 05 14:49:09 centos.localdomain pppd[13138]: rcvd [LCP ConfAck id=0x2 <magic 0xef4a94e>]
Mar 05 14:49:09 centos.localdomain pppd[13138]: Overriding mtu 1500 to 1400
Mar 05 14:49:09 centos.localdomain pppd[13138]: PPPoL2TP options: debugmask 0
Mar 05 14:49:09 centos.localdomain pppd[13138]: Overriding mru 1500 to mtu value 1400
Mar 05 14:49:09 centos.localdomain pppd[13138]: rcvd [CHAP Challenge id=0x1 <1037d8903f04f6e4184600f42a68cb1f>, name = ""]
Mar 05 14:49:09 centos.localdomain pppd[13138]: sent [CHAP Response id=0x1 <2d63da3ed23e1058b5a4cdfed8c75a57000000000000000098cb33e5571a022d521a4b27366f957eb2c9e3f5374033a100>, name = "mylogin"]
Mar 05 14:49:09 centos.localdomain pppd[13138]: rcvd [CHAP Success id=0x1 "S=E4CAD92D1C0F6316BE583DE762FF842790E5DB27"]
Mar 05 14:49:09 centos.localdomain pppd[13138]: CHAP authentication succeeded
Mar 05 14:49:09 centos.localdomain pppd[13138]: sent [IPCP ConfReq id=0x1 <addr 0.0.0.0> <ms-dns1 0.0.0.0> <ms-dns2 0.0.0.0>]
Mar 05 14:49:10 centos.localdomain pppd[13138]: rcvd [IPCP ConfReq id=0x1 <addr 195.149.70.70>]
Mar 05 14:49:10 centos.localdomain pppd[13138]: sent [IPCP ConfAck id=0x1 <addr 195.149.70.70>]
Mar 05 14:49:10 centos.localdomain pppd[13138]: rcvd [IPCP ConfNak id=0x1 <addr 10.10.181.222> <ms-dns1 10.10.255.4> <ms-dns2 10.10.255.5>]
Mar 05 14:49:10 centos.localdomain pppd[13138]: sent [IPCP ConfReq id=0x2 <addr 10.10.181.222> <ms-dns1 10.10.255.4> <ms-dns2 10.10.255.5>]
Mar 05 14:49:10 centos.localdomain pppd[13138]: rcvd [IPCP ConfAck id=0x2 <addr 10.10.181.222> <ms-dns1 10.10.255.4> <ms-dns2 10.10.255.5>]
Mar 05 14:49:10 centos.localdomain pppd[13138]: local IP address 10.10.181.222
Mar 05 14:49:10 centos.localdomain pppd[13138]: remote IP address 195.149.70.70
Mar 05 14:49:10 centos.localdomain pppd[13138]: primary DNS address 10.10.255.4
Mar 05 14:49:10 centos.localdomain pppd[13138]: secondary DNS address 10.10.255.5
Mar 05 14:49:10 centos.localdomain NetworkManager[3449]: <info> [1551790150.0126] device (ppp0): state change: unmanaged -> unavailable (reason 'connection-assumed', sys-iface-state: 'external')
Mar 05 14:49:10 centos.localdomain NetworkManager[3449]: <info> [1551790150.0134] device (ppp0): state change: unavailable -> disconnected (reason 'none', sys-iface-state: 'external')
Mar 05 14:49:10 centos.localdomain charon[13114]: 06[KNL] 10.10.181.222 appeared on ppp0
Mar 05 14:49:10 centos.localdomain charon[13114]: 08[KNL] 10.10.181.222 disappeared from ppp0
Mar 05 14:49:10 centos.localdomain charon[13114]: 10[KNL] 10.10.181.222 appeared on ppp0
Mar 05 14:49:10 centos.localdomain charon[13114]: 12[KNL] interface ppp0 activated
Mar 05 14:49:10 centos.localdomain pppd[13138]: Script /etc/ppp/ip-up started (pid 13151)
Mar 05 14:49:10 centos.localdomain pppd[13138]: Script /etc/ppp/ip-up finished (pid 13151), status = 0x0
Mar 05 14:49:29 centos.localdomain charon[13114]: 14[IKE] sending keep alive to 195.149.70.70[4500]
Mar 05 14:49:49 centos.localdomain charon[13114]: 09[IKE] sending keep alive to 195.149.70.70[4500]
Mar 05 14:50:09 centos.localdomain charon[13114]: 06[IKE] sending keep alive to 195.149.70.70[4500]
Mar 05 14:50:29 centos.localdomain charon[13114]: 06[IKE] sending keep alive to 195.149.70.70[4500]
Mar 05 14:50:41 centos.localdomain xl2tpd[3928]: xl2tpd[3928]: Maximum retries exceeded for tunnel 19104. Closing.
Mar 05 14:50:41 centos.localdomain xl2tpd[3928]: xl2tpd[3928]: Connection 61134 closed to 195.149.70.70, port 1701 (Timeout)
Mar 05 14:50:41 centos.localdomain pppd[13138]: Terminating on signal 15
Mar 05 14:50:41 centos.localdomain pppd[13138]: Connect time 1.6 minutes.
Mar 05 14:50:41 centos.localdomain pppd[13138]: Sent 93405 bytes, received 0 bytes.
Mar 05 14:50:41 centos.localdomain NetworkManager[3449]: <info> [1551790241.0074] device (ppp0): state change: disconnected -> unmanaged (reason 'connection-assumed', sys-iface-state: 'external')
Mar 05 14:50:41 centos.localdomain charon[13114]: 16[KNL] interface ppp0 deactivated
Mar 05 14:50:41 centos.localdomain charon[13114]: 05[KNL] 10.10.181.222 disappeared from ppp0
Mar 05 14:50:41 centos.localdomain pppd[13138]: Script /etc/ppp/ip-down started (pid 13155)
Mar 05 14:50:41 centos.localdomain pppd[13138]: Overriding mtu 1500 to 1400
Mar 05 14:50:41 centos.localdomain pppd[13138]: PPPoL2TP options: debugmask 0
Mar 05 14:50:41 centos.localdomain pppd[13138]: Overriding mru 1500 to mtu value 1400
Mar 05 14:50:41 centos.localdomain pppd[13138]: sent [LCP TermReq id=0x3 "User request"]
Mar 05 14:50:41 centos.localdomain pppd[13138]: Script /etc/ppp/ip-down finished (pid 13155), status = 0x0
Mar 05 14:50:44 centos.localdomain pppd[13138]: sent [LCP TermReq id=0x4 "User request"]
Mar 05 14:50:47 centos.localdomain pppd[13138]: Connection terminated.
Mar 05 14:50:47 centos.localdomain charon[13114]: 08[KNL] interface ppp0 deleted
Mar 05 14:50:47 centos.localdomain pppd[13138]: Modem hangup
Mar 05 14:50:47 centos.localdomain pppd[13138]: Exit.
Mar 05 14:50:50 centos.localdomain kernel: device eth0 left promiscuous mode
Code: Select all
Mar 5 14:07:58 10.1.255.11 ASA %ASA-6-603106: L2TP Tunnel created, tunnel_id is 60657, remote_peer_ip is 1.1.1.1
Mar 5 14:07:58 10.1.255.11 ASA %ASA-7-713204: Group = DefaultRAGroup, Username = mylogin, IP = 1.1.1.1, Adding static route for client address: 10.10.181.222
Mar 5 14:08:12 10.1.255.11 ASA %ASA-7-715036: Group = DefaultRAGroup, Username = mylogin, IP = 1.1.1.1, Sending keep-alive of type DPD R-U-THERE (seq number 0x14f5d486)
Mar 5 14:08:12 10.1.255.11 ASA %ASA-7-715046: Group = DefaultRAGroup, Username = mylogin, IP = 1.1.1.1, constructing blank hash payload
Mar 5 14:08:12 10.1.255.11 ASA %ASA-7-715046: Group = DefaultRAGroup, Username = mylogin, IP = 1.1.1.1, constructing qm hash payload
Mar 5 14:08:12 10.1.255.11 ASA %ASA-7-713236: IP = 1.1.1.1, IKE_DECODE SENDING Message (msgid=b797a22) with payloads : HDR + HASH (8) + NOTIFY (11) + NONE (0) total length : 84
Mar 5 14:08:14 10.1.255.11 ASA %ASA-7-715036: Group = DefaultRAGroup, Username = mylogin, IP = 1.1.1.1, Sending keep-alive of type DPD R-U-THERE (seq number 0x14f5d487)
Mar 5 14:08:14 10.1.255.11 ASA %ASA-7-715046: Group = DefaultRAGroup, Username = mylogin, IP = 1.1.1.1, constructing blank hash payload
Mar 5 14:08:14 10.1.255.11 ASA %ASA-7-715046: Group = DefaultRAGroup, Username = mylogin, IP = 1.1.1.1, constructing qm hash payload
Mar 5 14:08:14 10.1.255.11 ASA %ASA-7-713236: IP = 1.1.1.1, IKE_DECODE SENDING Message (msgid=4a4f8f79) with payloads : HDR + HASH (8) + NOTIFY (11) + NONE (0) total length : 84
Mar 5 14:08:16 10.1.255.11 ASA %ASA-7-715036: Group = DefaultRAGroup, Username = mylogin, IP = 1.1.1.1, Sending keep-alive of type DPD R-U-THERE (seq number 0x14f5d488)
Mar 5 14:08:16 10.1.255.11 ASA %ASA-7-715046: Group = DefaultRAGroup, Username = mylogin, IP = 1.1.1.1, constructing blank hash payload
Mar 5 14:08:16 10.1.255.11 ASA %ASA-7-715046: Group = DefaultRAGroup, Username = mylogin, IP = 1.1.1.1, constructing qm hash payload
Mar 5 14:08:16 10.1.255.11 ASA %ASA-7-713236: IP = 1.1.1.1, IKE_DECODE SENDING Message (msgid=1781835a) with payloads : HDR + HASH (8) + NOTIFY (11) + NONE (0) total length : 84
Mar 5 14:08:18 10.1.255.11 ASA %ASA-3-713123: Group = DefaultRAGroup, Username = mylogin, IP = 1.1.1.1, IKE lost contact with remote peer, deleting connection (keepalive type: DPD)
Mar 5 14:08:18 10.1.255.11 ASA %ASA-7-713906: Group = DefaultRAGroup, Username = mylogin, IP = 1.1.1.1, IKE SA MM:a030d784 rcv'd Terminate: state MM_ACTIVE flags 0x0001b042, refcnt 1, tuncnt 1
Mar 5 14:08:18 10.1.255.11 ASA %ASA-6-603107: L2TP Tunnel deleted, tunnel_id = 60657, remote_peer_ip = 1.1.1.1
Mar 5 14:08:18 10.1.255.11 ASA %ASA-7-713906: Group = DefaultRAGroup, Username = mylogin, IP = 1.1.1.1, sending delete/delete with reason message
Mar 5 14:08:18 10.1.255.11 ASA %ASA-7-715046: Group = DefaultRAGroup, Username = mylogin, IP = 1.1.1.1, constructing blank hash payload
Mar 5 14:08:18 10.1.255.11 ASA %ASA-7-715046: Group = DefaultRAGroup, Username = mylogin, IP = 1.1.1.1, constructing IPSec delete payload
Mar 5 14:08:18 10.1.255.11 ASA %ASA-7-715046: Group = DefaultRAGroup, Username = mylogin, IP = 1.1.1.1, constructing qm hash payload
Mar 5 14:08:18 10.1.255.11 ASA %ASA-7-713236: IP = 1.1.1.1, IKE_DECODE SENDING Message (msgid=1b96c90d) with payloads : HDR + HASH (8) + DELETE (12) + NONE (0) total length : 68
Mar 5 14:08:18 10.1.255.11 ASA %ASA-7-713906: Group = DefaultRAGroup, Username = mylogin, IP = 1.1.1.1, Active unit receives a delete event for remote peer 1.1.1.1.
Mar 5 14:08:18 10.1.255.11 ASA %ASA-7-713906: Group = DefaultRAGroup, Username = mylogin, IP = 1.1.1.1, IKE SA MM:a030d784 terminating: flags 0x0101b002, refcnt 0, tuncnt 1
Mar 5 14:08:18 10.1.255.11 ASA %ASA-7-715009: Group = DefaultRAGroup, Username = mylogin, IP = 1.1.1.1, IKE Deleting SA: Remote Proxy 1.1.1.1, Local Proxy 195.149.70.70
Mar 5 14:08:18 10.1.255.11 ASA %ASA-7-713906: Group = DefaultRAGroup, Username = mylogin, IP = 1.1.1.1, IKE SA MM:a030d784 terminating: flags 0x0101b002, refcnt 0, tuncnt 0
Mar 5 14:08:18 10.1.255.11 ASA %ASA-7-713906: Group = DefaultRAGroup, Username = mylogin, IP = 1.1.1.1, sending delete/delete with reason message
Mar 5 14:08:18 10.1.255.11 ASA %ASA-6-602304: IPSEC: An outbound remote access SA (SPI= 0xC4C794AA) between 195.149.70.70 and 1.1.1.1 (user= mylogin) has been deleted.
Mar 5 14:08:18 10.1.255.11 ASA %ASA-6-602304: IPSEC: An inbound remote access SA (SPI= 0xC6AE4588) between 195.149.70.70 and 1.1.1.1 (user= mylogin) has been deleted.
Mar 5 14:08:18 10.1.255.11 ASA %ASA-7-715046: Group = DefaultRAGroup, Username = mylogin, IP = 1.1.1.1, constructing blank hash payload
Mar 5 14:08:18 10.1.255.11 ASA %ASA-7-715046: Group = DefaultRAGroup, Username = mylogin, IP = 1.1.1.1, constructing IKE delete payload
Mar 5 14:08:18 10.1.255.11 ASA %ASA-7-715046: Group = DefaultRAGroup, Username = mylogin, IP = 1.1.1.1, constructing qm hash payload
Mar 5 14:08:18 10.1.255.11 ASA %ASA-7-713236: IP = 1.1.1.1, IKE_DECODE SENDING Message (msgid=714b69b3) with payloads : HDR + HASH (8) + DELETE (12) + NONE (0) total length : 80
Mar 5 14:08:18 10.1.255.11 ASA %ASA-5-713259: Group = DefaultRAGroup, Username = mylogin, IP = 1.1.1.1, Session is being torn down. Reason: L2TP initiated
Mar 5 14:08:18 10.1.255.11 ASA %ASA-4-113019: Group = DefaultRAGroup, Username = mylogin, IP = 1.1.1.1, Session disconnected. Session Type: L2TPOverIPsecOverNatT, Duration: 0h:00m:22s, Bytes xmt: 995, Bytes rcv: 811, Reason: L2TP initiated
Mar 5 14:09:29 10.1.255.11 ASA %ASA-6-302015: Built inbound UDP connection 1883360612 for outside:1.1.1.1/52401 (1.1.1.1/52401) to identity:195.149.70.70/4500 (195.149.70.70/4500)
Mar 5 14:09:29 10.1.255.11 ASA %ASA-7-710005: UDP request discarded from 1.1.1.1/52401 to outside:195.149.70.70/4500
Mar 5 14:09:29 10.1.255.11 ASA %ASA-6-302016: Teardown UDP connection 1883360612 for outside:1.1.1.1/52401 to identity:195.149.70.70/4500 duration 0:00:00 bytes 84
Mar 5 14:09:30 10.1.255.11 ASA %ASA-6-302015: Built inbound UDP connection 1883360931 for outside:1.1.1.1/52401 (1.1.1.1/52401) to identity:195.149.70.70/4500 (195.149.70.70/4500)
Mar 5 14:09:30 10.1.255.11 ASA %ASA-7-710005: UDP request discarded from 1.1.1.1/52401 to outside:195.149.70.70/4500
Mar 5 14:09:30 10.1.255.11 ASA %ASA-6-302016: Teardown UDP connection 1883360931 for outside:1.1.1.1/52401 to identity:195.149.70.70/4500 duration 0:00:00 bytes 100
Mar 5 14:09:32 10.1.255.11 ASA %ASA-6-302015: Built inbound UDP connection 1883361548 for outside:1.1.1.1/52401 (1.1.1.1/52401) to identity:195.149.70.70/4500 (195.149.70.70/4500)
Mar 5 14:09:32 10.1.255.11 ASA %ASA-7-710005: UDP request discarded from 1.1.1.1/52401 to outside:195.149.70.70/4500
Mar 5 14:09:32 10.1.255.11 ASA %ASA-6-302016: Teardown UDP connection 1883361548 for outside:1.1.1.1/52401 to identity:195.149.70.70/4500 duration 0:00:00 bytes 100
Mar 5 14:09:32 10.1.255.11 ASA %ASA-6-302015: Built inbound UDP connection 1883361551 for outside:1.1.1.1/52401 (1.1.1.1/52401) to identity:195.149.70.70/4500 (195.149.70.70/4500)
Mar 5 14:09:32 10.1.255.11 ASA %ASA-7-710005: UDP request discarded from 1.1.1.1/52401 to outside:195.149.70.70/4500
Mar 5 14:09:32 10.1.255.11 ASA %ASA-6-302016: Teardown UDP connection 1883361551 for outside:1.1.1.1/52401 to identity:195.149.70.70/4500 duration 0:00:00 bytes 84
Mar 5 14:09:36 10.1.255.11 ASA %ASA-6-302015: Built inbound UDP connection 1883362552 for outside:1.1.1.1/52401 (1.1.1.1/52401) to identity:195.149.70.70/4500 (195.149.70.70/4500)
Mar 5 14:09:36 10.1.255.11 ASA %ASA-7-710005: UDP request discarded from 1.1.1.1/52401 to outside:195.149.70.70/4500
Mar 5 14:09:36 10.1.255.11 ASA %ASA-6-302016: Teardown UDP connection 1883362552 for outside:1.1.1.1/52401 to identity:195.149.70.70/4500 duration 0:00:00 bytes 100
Mar 5 14:09:44 10.1.255.11 ASA %ASA-6-302015: Built inbound UDP connection 1883365224 for outside:1.1.1.1/52401 (1.1.1.1/52401) to identity:195.149.70.70/4500 (195.149.70.70/4500)
Mar 5 14:09:44 10.1.255.11 ASA %ASA-7-710005: UDP request discarded from 1.1.1.1/52401 to outside:195.149.70.70/4500
Mar 5 14:09:44 10.1.255.11 ASA %ASA-6-302016: Teardown UDP connection 1883365224 for outside:1.1.1.1/52401 to identity:195.149.70.70/4500 duration 0:00:00 bytes 100
Mar 5 14:09:58 10.1.255.11 ASA %ASA-6-302016: Teardown UDP connection 1883332033 for outside:1.1.1.1/50358 to identity:195.149.70.70/500 duration 0:02:01 bytes 916
Mar 5 14:09:59 10.1.255.11 ASA %ASA-6-302015: Built inbound UDP connection 1883369498 for outside:1.1.1.1/52401 (1.1.1.1/52401) to identity:195.149.70.70/4500 (195.149.70.70/4500)
Mar 5 14:09:59 10.1.255.11 ASA %ASA-7-710005: UDP request discarded from 1.1.1.1/52401 to outside:195.149.70.70/4500