cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
572
Views
0
Helpful
1
Replies

To build VPN with ISDN dialing

weihua.zhang
Level 1
Level 1

I have set up a lab for building VPN with ISDN dialing. But I can not succeed in building VPN. The debug information is the following:

00:19:00: ISAKMP: received ke message (1/1)

00:19:00: ISAKMP (0:4): SA is still budding. Attached new ipsec request to it.sh

00:19:30: ISAKMP: received ke message (3/1)

00:19:30: ISAKMP (0:4): ignoring request to send delete notify (sa not authenticated) src 61.165.19.202 dst 61.129.97.206

00:19:31: ISAKMP: received ke message (1/1)

00:19:31: ISAKMP (0:4): SA is still budding. Attached new ipsec request to it.

00:20:01: ISAKMP: received ke message (1/1)

00:20:01: ISAKMP (0:4): SA is still budding. Attached new ipsec request to it.

00:20:25: ISAKMP: quick mode timer expired.

00:20:25: ISAKMP (0:4): peer does not do paranoid keepalives.

00:20:25: ISAKMP (0:4): deleting SA reason "QM_TIMER expired" state (I) MM_NO_STATE (peer 61.129.97.206) input queue 0

00:20:25: ISAKMP (0:4): deleting node 5323795 error TRUE reason "QM_TIMER expired"

00:20:25: ISAKMP (0:4): deleting node 842251450 error TRUE reason "QM_TIMER expired"

00:20:25: ISAKMP (0:4): deleting node 859010187 error TRUE reason "QM_TIMER expired"

00:20:25: ISAKMP (0:4): deleting node 1429495893 error TRUE reason "QM_TIMER expired"

00:20:25: ISAKMP (0:4): deleting node -1724169941 error TRUE reason "QM_TIMER expired"

00:20:25: ISAKMP (0:4): deleting node -1114837784 error TRUE reason "QM_TIMER expired"

00:20:25: ISAKMP (0:4): deleting node 1748032182 error TRUE reason "QM_TIMER expired"

00:20:31: ISAKMP: received ke message (3/1)

00:20:31: ISAKMP: ignoring request to send delete notify (no ISAKMP sa) src 61.165.19.202 dst 61.129.97.206 for SPI 0x0

00:20:31: ISAKMP: received ke message (1/1)

00:20:31: ISAKMP: local port 500, remote port 500

00:20:31: ISAKMP (0:5): beginning Main Mode exchange

00:20:31: ISAKMP (0:5): sending packet to 61.129.97.206 (I) MM_NO_STATE

00:20:31: ISAKMP (0:5): received packet from 61.129.97.206 (I) MM_NO_STATE

00:20:31: ISAKMP (0:5): Notify has no hash. Rejected.

00:20:31: %CRYPTO-6-IKMP_MODE_FAILURE: Processing of Informational mode failed with peer at 61.129.97.206

Who can help me? Thanks

1 Reply 1

cjacinto
Cisco Employee
Cisco Employee

Check your pre-shared keys if they are defined properly for the peer. Compare your config against:

http://www.cisco.com/warp/customer/793/access_dial/ipsec_9349.html