P-662H/HW-D Series User’s Guide

 

Table 192 IKE Logs (continued)

 

 

 

 

 

 

LOG MESSAGE

 

DESCRIPTION

 

 

 

 

XAUTH fail! Username:

The router was not able to use extended authentication to

 

<Username>

 

 

authenticate the listed username.

 

Rule[%d] Phase 1 negotiation

The listed rule’s IKE phase 1 negotiation mode did not match

 

mode mismatch

 

between the router and the peer.

 

Rule [%d] Phase 1

encryption

The listed rule’s IKE phase 1 encryption algorithm did not

 

algorithm

mismatch

match between the router and the peer.

 

Rule [%d]

Phase 1

 

The listed rule’s IKE phase 1 authentication algorithm did not

 

authentication algorithm

match between the router and the peer.

 

mismatch

 

 

 

 

Rule [%d]

Phase 1

 

The listed rule’s IKE phase 1 authentication method did not

 

authentication method

match between the router and the peer.

 

mismatch

 

 

 

 

Rule [%d]

Phase 1

key group

The listed rule’s IKE phase 1 key group did not match

 

mismatch

 

 

between the router and the peer.

 

Rule [%d]

Phase 2

protocol

The listed rule’s IKE phase 2 protocol did not match between

 

mismatch

 

 

the router and the peer.

 

Rule [%d] Phase 2

encryption

The listed rule’s IKE phase 2 encryption algorithm did not

 

algorithm

mismatch

match between the router and the peer.

 

Rule [%d]

Phase 2

 

The listed rule’s IKE phase 2 authentication algorithm did not

 

authentication algorithm

match between the router and the peer.

 

mismatch

 

 

 

 

Rule [%d]

Phase 2

 

The listed rule’s IKE phase 2 encapsulation did not match

 

encapsulation mismatch

between the router and the peer.

 

Rule [%d]> Phase 2 pfs

The listed rule’s IKE phase 2 perfect forward secret (pfs)

 

mismatch

 

 

setting did not match between the router and the peer.

 

Rule [%d] Phase 1

ID mismatch

The listed rule’s IKE phase 1 ID did not match between the

 

 

 

 

router and the peer.

 

Rule [%d]

Phase 1

hash

The listed rule’s IKE phase 1 hash did not match between the

 

mismatch

 

 

router and the peer.

 

Rule [%d]

Phase 1

preshared

The listed rule’s IKE phase 1 pre-shared key did not match

 

key mismatch

 

between the router and the peer.

 

Rule [%d]

Tunnel built

The listed rule’s IPSec tunnel has been built successfully.

 

successfully

 

 

 

Rule [%d]

Peer's public key

The listed rule’s IKE phase 1 peer’s public key was not found.

 

not found

 

 

 

 

Rule [%d]

Verify peer's

The listed rule’s IKE phase 1verification of the peer’s

 

signature

failed

 

signature failed.

 

Rule [%d] Sending IKE request

IKE sent an IKE request for the listed rule.

 

Rule [%d]

Receiving IKE

IKE received an IKE request for the listed rule.

 

request

 

 

 

 

Swap rule

to rule [%d]

The router changed to using the listed rule.

 

Rule [%d] Phase 1

key length

The listed rule’s IKE phase 1 key length (with the AES

 

mismatch

 

 

encryption algorithm) did not match between the router and

 

 

 

 

the peer.

 

Rule [%d]

phase 1

mismatch

The listed rule’s IKE phase 1 did not match between the router

 

 

 

 

and the peer.

Appendix O Log Descriptions

473