Cisco Systems VPN Client Version 5.0.03.0560 Copyright (C) 1998-2007 Cisco Systems, Inc. All Rights Reserved. Client Type(s): Windows, WinNT Running on: 5.1.2600 Service Pack 2 Config file directory: C:\Program Files\Cisco Systems\VPN Client\ Cisco Systems VPN Client Version 5.0.03.0560 Copyright (C) 1998-2007 Cisco Systems, Inc. All Rights Reserved. Client Type(s): Windows, WinNT Running on: 5.1.2600 Service Pack 2 Config file directory: C:\Program Files\Cisco Systems\VPN Client\ 1 13:58:38.064 08/22/08 Sev=Info/4 CM/0x63100002 Begin connection process 2 13:58:38.064 08/22/08 Sev=Info/4 CM/0x63100004 Establish secure connection 3 13:58:38.064 08/22/08 Sev=Info/4 CM/0x63100024 Attempt connection with server "xx.xx.xx.xx" 4 13:58:38.079 08/22/08 Sev=Info/6 IKE/0x6300003B Attempting to establish a connection with xx.xx.xx.xx. 5 13:58:38.079 08/22/08 Sev=Info/4 IKE/0x63000013 SENDING >>> ISAKMP OAK AG (SA, KE, NON, ID, VID(Xauth), VID(dpd), VID(Frag), VID(Nat-T), VID(Unity)) to xx.xx.xx.xx 6 13:58:38.361 08/22/08 Sev=Info/5 IKE/0x6300002F Received ISAKMP packet: peer = xx.xx.xx.xx 7 13:58:38.361 08/22/08 Sev=Info/4 IKE/0x63000014 RECEIVING <<< ISAKMP OAK AG (SA, VID(Xauth), VID(dpd), VID(Unity), VID(?), KE, ID, NON, VID(?), VID(Nat-T), NAT-D, NAT-D, HASH) from xx.xx.xx.xx 8 13:58:38.361 08/22/08 Sev=Info/5 IKE/0x63000001 Peer supports XAUTH 9 13:58:38.361 08/22/08 Sev=Info/5 IKE/0x63000001 Peer supports DPD 10 13:58:38.361 08/22/08 Sev=Info/5 IKE/0x63000001 Peer is a Cisco-Unity compliant peer 11 13:58:38.361 08/22/08 Sev=Info/5 IKE/0x63000082 Received IOS Vendor ID with unknown capabilities flag 0x000000A5 12 13:58:38.361 08/22/08 Sev=Info/5 IKE/0x63000001 Peer supports NAT-T 13 13:58:38.361 08/22/08 Sev=Info/6 IKE/0x63000001 IOS Vendor ID Contruction successful 14 13:58:38.361 08/22/08 Sev=Info/4 IKE/0x63000013 SENDING >>> ISAKMP OAK AG *(HASH, NOTIFY:STATUS_INITIAL_CONTACT, NAT-D, NAT-D, VID(?), VID(Unity)) to xx.xx.xx.xx 15 13:58:38.361 08/22/08 Sev=Info/6 IKE/0x63000055 Sent a keepalive on the IPSec SA 16 13:58:38.361 08/22/08 Sev=Info/4 IKE/0x63000083 IKE Port in use - Local Port = 0x0444, Remote Port = 0x1194 17 13:58:38.361 08/22/08 Sev=Info/5 IKE/0x63000072 Automatic NAT Detection Status: Remote end is NOT behind a NAT device This end IS behind a NAT device 18 13:58:38.361 08/22/08 Sev=Info/4 CM/0x6310000E Established Phase 1 SA. 1 Crypto Active IKE SA, 0 User Authenticated IKE SA in the system 19 13:58:38.361 08/22/08 Sev=Info/4 CM/0x6310000E Established Phase 1 SA. 1 Crypto Active IKE SA, 1 User Authenticated IKE SA in the system 20 13:58:38.376 08/22/08 Sev=Info/5 IKE/0x6300005E Client sending a firewall request to concentrator 21 13:58:38.376 08/22/08 Sev=Info/5 IKE/0x6300005D Firewall Policy: Product=Cisco Systems Integrated Client Firewall, Capability= (Centralized Protection Policy). 22 13:58:38.376 08/22/08 Sev=Info/4 IKE/0x63000013 SENDING >>> ISAKMP OAK TRANS *(HASH, ATTR) to xx.xx.xx.xx 23 13:58:43.361 08/22/08 Sev=Info/5 IKE/0x6300002F Received ISAKMP packet: peer = xx.xx.xx.xx 24 13:58:43.361 08/22/08 Sev=Info/4 IKE/0x63000014 RECEIVING <<< ISAKMP OAK AG (Retransmission) from xx.xx.xx.xx 25 13:58:43.376 08/22/08 Sev=Info/4 IKE/0x63000021 Retransmitting last packet! 26 13:58:43.376 08/22/08 Sev=Info/4 IKE/0x63000013 SENDING >>> ISAKMP OAK AG *(Retransmission) to xx.xx.xx.xx 27 13:58:43.376 08/22/08 Sev=Info/4 IKE/0x63000021 Retransmitting last packet! 28 13:58:43.376 08/22/08 Sev=Info/4 IKE/0x63000013 SENDING >>> ISAKMP OAK TRANS *(Retransmission) to xx.xx.xx.xx 29 13:58:48.361 08/22/08 Sev=Info/5 IKE/0x6300002F Received ISAKMP packet: peer = xx.xx.xx.xx 30 13:58:48.361 08/22/08 Sev=Info/4 IKE/0x63000014 RECEIVING <<< ISAKMP OAK AG (Retransmission) from xx.xx.xx.xx 31 13:58:48.361 08/22/08 Sev=Info/4 IKE/0x63000021 Retransmitting last packet! 32 13:58:48.361 08/22/08 Sev=Info/4 IKE/0x63000013 SENDING >>> ISAKMP OAK AG *(Retransmission) to xx.xx.xx.xx 33 13:58:48.361 08/22/08 Sev=Info/6 IKE/0x63000055 Sent a keepalive on the IPSec SA 34 13:58:48.579 08/22/08 Sev=Info/4 IKE/0x63000021 Retransmitting last packet! 35 13:58:48.579 08/22/08 Sev=Info/4 IKE/0x63000013 SENDING >>> ISAKMP OAK TRANS *(Retransmission) to xx.xx.xx.xx 36 13:58:53.361 08/22/08 Sev=Info/5 IKE/0x6300002F Received ISAKMP packet: peer = xx.xx.xx.xx 37 13:58:53.361 08/22/08 Sev=Info/4 IKE/0x63000014 RECEIVING <<< ISAKMP OAK AG (Retransmission) from xx.xx.xx.xx 38 13:58:53.361 08/22/08 Sev=Info/4 IKE/0x63000021 Retransmitting last packet! 39 13:58:53.361 08/22/08 Sev=Info/4 IKE/0x63000013 SENDING >>> ISAKMP OAK AG *(Retransmission) to xx.xx.xx.xx 40 13:58:53.579 08/22/08 Sev=Info/4 IKE/0x63000021 Retransmitting last packet! 41 13:58:53.579 08/22/08 Sev=Info/4 IKE/0x63000013 SENDING >>> ISAKMP OAK TRANS *(Retransmission) to xx.xx.xx.xx 42 13:58:58.345 08/22/08 Sev=Info/5 IKE/0x6300002F Received ISAKMP packet: peer = xx.xx.xx.xx 43 13:58:58.345 08/22/08 Sev=Info/4 IKE/0x63000014 RECEIVING <<< ISAKMP OAK AG (Retransmission) from xx.xx.xx.xx 44 13:58:58.345 08/22/08 Sev=Info/4 IKE/0x63000021 Retransmitting last packet! 45 13:58:58.345 08/22/08 Sev=Info/4 IKE/0x63000013 SENDING >>> ISAKMP OAK AG *(Retransmission) to xx.xx.xx.xx 46 13:58:58.579 08/22/08 Sev=Info/6 IKE/0x63000055 Sent a keepalive on the IPSec SA 47 13:58:58.579 08/22/08 Sev=Info/4 IKE/0x6300002D Phase-2 retransmission count exceeded: MsgID=90F2518F 48 13:58:58.579 08/22/08 Sev=Info/4 IKE/0x63000013 SENDING >>> ISAKMP OAK INFO *(HASH, NOTIFY:DPD_REQUEST) to xx.xx.xx.xx 49 13:58:58.579 08/22/08 Sev=Info/6 IKE/0x6300003D Sending DPD request to xx.xx.xx.xx, our seq# = 3995494965 50 13:58:58.579 08/22/08 Sev=Info/4 IKE/0x63000017 Marking IKE SA for deletion (I_Cookie=35264671C7990152 R_Cookie=83B473782AA57845) reason = DEL_REASON_IKE_NEG_FAILED 51 13:58:58.579 08/22/08 Sev=Info/4 IKE/0x63000013 SENDING >>> ISAKMP OAK INFO *(HASH, DEL) to xx.xx.xx.xx 52 13:59:01.579 08/22/08 Sev=Info/4 IKE/0x6300004B Discarding IKE SA negotiation (I_Cookie=35264671C7990152 R_Cookie=83B473782AA57845) reason = DEL_REASON_IKE_NEG_FAILED 53 13:59:01.579 08/22/08 Sev=Info/4 CM/0x6310000F Phase 1 SA deleted before Mode Config is completed cause by "DEL_REASON_IKE_NEG_FAILED". 0 Crypto Active IKE SA, 0 User Authenticated IKE SA in the system 54 13:59:01.579 08/22/08 Sev=Info/5 CM/0x63100025 Initializing CVPNDrv 55 13:59:01.579 08/22/08 Sev=Info/6 CM/0x63100046 Set tunnel established flag in registry to 0. 56 13:59:01.579 08/22/08 Sev=Info/4 IKE/0x63000001 IKE received signal to terminate VPN connection 57 14:02:40.689 08/22/08 Sev=Info/4 CM/0x63100002 Begin connection process 58 14:02:40.689 08/22/08 Sev=Info/4 CM/0x63100004 Establish secure connection 59 14:02:40.689 08/22/08 Sev=Info/4 CM/0x63100024 Attempt connection with server "xx.xx.xx.xx" 60 14:02:40.704 08/22/08 Sev=Info/6 IKE/0x6300003B Attempting to establish a connection with xx.xx.xx.xx. 61 14:02:40.704 08/22/08 Sev=Info/4 IKE/0x63000013 SENDING >>> ISAKMP OAK AG (SA, KE, NON, ID, VID(Xauth), VID(dpd), VID(Frag), VID(Nat-T), VID(Unity)) to xx.xx.xx.xx 62 14:02:40.970 08/22/08 Sev=Info/5 IKE/0x6300002F Received ISAKMP packet: peer = xx.xx.xx.xx 63 14:02:40.970 08/22/08 Sev=Info/4 IKE/0x63000014 RECEIVING <<< ISAKMP OAK AG (SA, VID(Xauth), VID(dpd), VID(Unity), VID(?), KE, ID, NON, VID(?), VID(Nat-T), NAT-D, NAT-D, HASH) from xx.xx.xx.xx 64 14:02:40.970 08/22/08 Sev=Info/5 IKE/0x63000001 Peer supports XAUTH 65 14:02:40.970 08/22/08 Sev=Info/5 IKE/0x63000001 Peer supports DPD 66 14:02:40.970 08/22/08 Sev=Info/5 IKE/0x63000001 Peer is a Cisco-Unity compliant peer 67 14:02:40.970 08/22/08 Sev=Info/5 IKE/0x63000082 Received IOS Vendor ID with unknown capabilities flag 0x000000A5 68 14:02:40.970 08/22/08 Sev=Info/5 IKE/0x63000001 Peer supports NAT-T 69 14:02:40.986 08/22/08 Sev=Info/6 IKE/0x63000001 IOS Vendor ID Contruction successful 70 14:02:40.986 08/22/08 Sev=Info/4 IKE/0x63000013 SENDING >>> ISAKMP OAK AG *(HASH, NOTIFY:STATUS_INITIAL_CONTACT, NAT-D, NAT-D, VID(?), VID(Unity)) to xx.xx.xx.xx 71 14:02:40.986 08/22/08 Sev=Info/6 IKE/0x63000055 Sent a keepalive on the IPSec SA 72 14:02:40.986 08/22/08 Sev=Info/4 IKE/0x63000083 IKE Port in use - Local Port = 0x044B, Remote Port = 0x1194 73 14:02:40.986 08/22/08 Sev=Info/5 IKE/0x63000072 Automatic NAT Detection Status: Remote end is NOT behind a NAT device This end IS behind a NAT device 74 14:02:40.986 08/22/08 Sev=Info/4 CM/0x6310000E Established Phase 1 SA. 1 Crypto Active IKE SA, 0 User Authenticated IKE SA in the system 75 14:02:40.986 08/22/08 Sev=Info/4 CM/0x6310000E Established Phase 1 SA. 1 Crypto Active IKE SA, 1 User Authenticated IKE SA in the system 76 14:02:41.001 08/22/08 Sev=Info/5 IKE/0x6300005E Client sending a firewall request to concentrator 77 14:02:41.001 08/22/08 Sev=Info/5 IKE/0x6300005D Firewall Policy: Product=Cisco Systems Integrated Client Firewall, Capability= (Centralized Protection Policy). 78 14:02:41.001 08/22/08 Sev=Info/4 IKE/0x63000013 SENDING >>> ISAKMP OAK TRANS *(HASH, ATTR) to xx.xx.xx.xx 79 14:02:45.970 08/22/08 Sev=Info/5 IKE/0x6300002F Received ISAKMP packet: peer = xx.xx.xx.xx 80 14:02:45.970 08/22/08 Sev=Info/4 IKE/0x63000014 RECEIVING <<< ISAKMP OAK AG (Retransmission) from xx.xx.xx.xx 81 14:02:45.970 08/22/08 Sev=Info/4 IKE/0x63000021 Retransmitting last packet! 82 14:02:45.970 08/22/08 Sev=Info/4 IKE/0x63000013 SENDING >>> ISAKMP OAK AG *(Retransmission) to xx.xx.xx.xx 83 14:02:46.079 08/22/08 Sev=Info/4 IKE/0x63000021 Retransmitting last packet! 84 14:02:46.079 08/22/08 Sev=Info/4 IKE/0x63000013 SENDING >>> ISAKMP OAK TRANS *(Retransmission) to xx.xx.xx.xx 85 14:02:50.954 08/22/08 Sev=Info/5 IKE/0x6300002F Received ISAKMP packet: peer = xx.xx.xx.xx 86 14:02:50.954 08/22/08 Sev=Info/4 IKE/0x63000014 RECEIVING <<< ISAKMP OAK AG (Retransmission) from xx.xx.xx.xx 87 14:02:50.954 08/22/08 Sev=Info/4 IKE/0x63000021 Retransmitting last packet! 88 14:02:50.954 08/22/08 Sev=Info/4 IKE/0x63000013 SENDING >>> ISAKMP OAK AG *(Retransmission) to xx.xx.xx.xx 89 14:02:51.079 08/22/08 Sev=Info/6 IKE/0x63000055 Sent a keepalive on the IPSec SA 90 14:02:51.079 08/22/08 Sev=Info/4 IKE/0x63000021 Retransmitting last packet! 91 14:02:51.079 08/22/08 Sev=Info/4 IKE/0x63000013 SENDING >>> ISAKMP OAK TRANS *(Retransmission) to xx.xx.xx.xx 92 14:02:55.986 08/22/08 Sev=Info/5 IKE/0x6300002F Received ISAKMP packet: peer = xx.xx.xx.xx 93 14:02:55.986 08/22/08 Sev=Info/4 IKE/0x63000014 RECEIVING <<< ISAKMP OAK AG (Retransmission) from xx.xx.xx.xx 94 14:02:55.986 08/22/08 Sev=Info/4 IKE/0x63000021 Retransmitting last packet! 95 14:02:55.986 08/22/08 Sev=Info/4 IKE/0x63000013 SENDING >>> ISAKMP OAK AG *(Retransmission) to xx.xx.xx.xx 96 14:02:56.079 08/22/08 Sev=Info/4 IKE/0x63000021 Retransmitting last packet! 97 14:02:56.079 08/22/08 Sev=Info/4 IKE/0x63000013 SENDING >>> ISAKMP OAK TRANS *(Retransmission) to xx.xx.xx.xx 98 14:03:00.986 08/22/08 Sev=Info/5 IKE/0x6300002F Received ISAKMP packet: peer = xx.xx.xx.xx 99 14:03:00.986 08/22/08 Sev=Info/4 IKE/0x63000014 RECEIVING <<< ISAKMP OAK AG (Retransmission) from xx.xx.xx.xx 100 14:03:00.986 08/22/08 Sev=Info/4 IKE/0x63000021 Retransmitting last packet! 101 14:03:00.986 08/22/08 Sev=Info/4 IKE/0x63000013 SENDING >>> ISAKMP OAK AG *(Retransmission) to xx.xx.xx.xx 102 14:03:01.079 08/22/08 Sev=Info/6 IKE/0x63000055 Sent a keepalive on the IPSec SA 103 14:03:01.079 08/22/08 Sev=Info/4 IKE/0x6300002D Phase-2 retransmission count exceeded: MsgID=3D6FA1CD 104 14:03:01.079 08/22/08 Sev=Info/4 IKE/0x63000013 SENDING >>> ISAKMP OAK INFO *(HASH, NOTIFY:DPD_REQUEST) to xx.xx.xx.xx 105 14:03:01.079 08/22/08 Sev=Info/6 IKE/0x6300003D Sending DPD request to xx.xx.xx.xx, our seq# = 2713855880 106 14:03:01.079 08/22/08 Sev=Info/4 IKE/0x63000017 Marking IKE SA for deletion (I_Cookie=302203C8FB59F03C R_Cookie=83B4737852CDA717) reason = DEL_REASON_IKE_NEG_FAILED 107 14:03:01.079 08/22/08 Sev=Info/4 IKE/0x63000013 SENDING >>> ISAKMP OAK INFO *(HASH, DEL) to xx.xx.xx.xx 108 14:03:04.079 08/22/08 Sev=Info/4 IKE/0x6300004B Discarding IKE SA negotiation (I_Cookie=302203C8FB59F03C R_Cookie=83B4737852CDA717) reason = DEL_REASON_IKE_NEG_FAILED 109 14:03:04.079 08/22/08 Sev=Info/4 CM/0x6310000F Phase 1 SA deleted before Mode Config is completed cause by "DEL_REASON_IKE_NEG_FAILED". 0 Crypto Active IKE SA, 0 User Authenticated IKE SA in the system 110 14:03:04.079 08/22/08 Sev=Info/5 CM/0x63100025 Initializing CVPNDrv 111 14:03:04.079 08/22/08 Sev=Info/6 CM/0x63100046 Set tunnel established flag in registry to 0. 112 14:03:04.079 08/22/08 Sev=Info/4 IKE/0x63000001 IKE received signal to terminate VPN connection