Junos OS

 View Only
last person joined: 2 days ago 

Ask questions and share experiences about Junos OS.

Secure Connect Fails connection

  • 1.  Secure Connect Fails connection

    Posted 10-26-2021 12:57
    Good afternoon

    I have followed this youtube guide https://www.youtube.com/watch?v=RsswMJcTDSg

    All seems to be the same and the config commits correctly

    Using the Secure connect app on a laptop i have it will not connect it fails a fair way into the connection

    26/10/2021 14:32:34 - MONITOR: Configuration download - Start configuration download (host: x.x.x.x realm: default)
    26/10/2021 14:32:34 - MONITOR: Configuration download - Login success
    26/10/2021 14:32:34 - MONITOR: Configuration download - Configuration time not changed
    26/10/2021 14:32:34 - MONITOR: Configuration download - Logout success
    26/10/2021 14:32:34 - MONITOR: Configuration download - Logout - no new configuration imported
    26/10/2021 14:32:34 - SUCCESS - MONITOR: Configuration download -> Configuration is up to date
    26/10/2021 14:32:34 - MONITOR: Configuration download -> Save credentials for "username"
    26/10/2021 14:32:34 - INFO - MONITOR: Configuration download -> Start vpn connection
    26/10/2021 14:32:35 - System: Setting NCP virtual adapter linkstatus=0,laststate=0.
    26/10/2021 14:32:35 - ncpadapter: reset IP adapter properties
    26/10/2021 14:32:35 - ncpadapter: reset ipv4 properties,ip4adr=0.0.0.0
    26/10/2021 14:32:35 - ncpadapter: reset_ip4_properties, manual=0
    26/10/2021 14:32:35 - System: DNSHandling=0
    26/10/2021 14:32:35 - IPSec: Start building connection
    26/10/2021 14:32:35 - IpsDial: connection time interface choice,LocIpa=192.168.18.82,AdapterIndex=203
    26/10/2021 14:32:35 - Ike: Opening connection in PATHFINDER mode : Web-VPN
    26/10/2021 14:32:35 - Ike: Outgoing connect request AGGRESSIVE mode - gateway=x.x.x.x : Web-VPN
    26/10/2021 14:32:35 - Ike: ConRef=5, XMIT_MSG1_AGGRESSIVE, name=Web-VPN, vpngw=x.x.x.x:500
    26/10/2021 14:32:35 - ike_phase1:send_id:ID_USER_FQDN:pid=0,port=0,vpn@xyz.com
    26/10/2021 14:32:35 - Ike: ConRef=5, Send NAT-D vendor ID,remprt=500
    26/10/2021 14:32:35 - Ike: ConRef=5, RECV_MSG2_AGGRESSIVE, adapterindex=203,name=Web-VPN, remote ip:port=x.x.x.x:500,local ip:port=192.168.18.82:10952
    26/10/2021 14:32:35 - Ike: IKE phase I: Setting LifeTime to 28800 seconds
    26/10/2021 14:32:35 - Ike: Turning on XAUTH mode - Web-VPN
    26/10/2021 14:32:35 - Ike: IkeSa1 negotiated with the following properties -
    26/10/2021 14:32:35 - Authentication=XAUTH_INIT_PSK,Encryption=AES,Hash=SHA_256,DHGroup=19,KeyLen=256
    26/10/2021 14:32:35 - Ike: Web-VPN ->Support for NAT-T version - 9
    26/10/2021 14:32:35 - Ike: Turning on NATD mode - Web-VPN - 1
    26/10/2021 14:32:35 - IPSec: Final Tunnel EndPoint is=x.x.x.x
    26/10/2021 14:32:35 - Ike: ConRef=5, Remote peer is a Juniper Networks
    26/10/2021 14:32:35 - Ike: ike_phase1:recv_id:ID_IPV4_ADDR:pid=0,port=0,x.x.x.x
    26/10/2021 14:32:35 - Ike: ConRef=5, XMIT_MSG3_AGGRESSIVE, name=Web-VPN, vpngw=x.x.x.x:4500
    26/10/2021 14:32:35 - Ike: IkeSa1 negotiated with the following properties -
    26/10/2021 14:32:35 - Authentication=XAUTH_INIT_PSK,Encryption=AES,Hash=SHA_256,DHGroup=19,KeyLen=256
    26/10/2021 14:32:35 - Ike: Turning on DPD mode - Web-VPN
    26/10/2021 14:32:35 - Ike: phase1:name(Web-VPN) - connected
    26/10/2021 14:32:35 - SUCCESS: IKE phase 1 ready
    26/10/2021 14:32:35 - IPSec: Phase1 is Ready,AdapterIndex=203,IkeIndex=5,LocTepIpAdr=192.168.18.82,AltRekey=1
    26/10/2021 14:32:35 - Ike: ConRef=5, RECV_XAUTH_REQUEST, name=Web-VPN, vpngw=x.x.x.x:4500
    26/10/2021 14:32:35 - Ike: ConRef=5, XMIT_XAUTH_REPLY, name=Web-VPN, vpngw=x.x.x.x:4500
    26/10/2021 14:32:35 - Ike: ConRef=5, RECV_XAUTH_SET, name=Web-VPN, vpngw=x.x.x.x:4500
    26/10/2021 14:32:35 - Ike: ConRef=5, XMIT_XAUTH_ACK, name=Web-VPN, vpngw=x.x.x.x:4500
    26/10/2021 14:32:35 - IkeCfg: name <Web-VPN> - IkeXauth: enter state open
    26/10/2021 14:32:35 - SUCCESS: Ike Extended Authentication is ready
    26/10/2021 14:32:35 - IkeCfg: RECV_IKECFG_SET - Web-VPN
    26/10/2021 14:32:35 - IkeCfg: XMIT_IKECFG_ACK - Web-VPN
    26/10/2021 14:32:35 - IkeCfg: name <Web-VPN> - IkeXauth: enter state open
    26/10/2021 14:32:35 - SUCCESS: Ike Extended Authentication is ready
    26/10/2021 14:32:36 - IPSec: Quick Mode is Ready: IkeIndex=5,VpnSrcPort=10954
    26/10/2021 14:32:36 - IPSec: Assigned IP Address:IPv4=10.255.255.16,IPv6=0.0.0.0
    26/10/2021 14:32:36 - IPSec: Assigned IP Network Mask:IPv4=255.255.255.255,IPv6=0.0.0.0
    26/10/2021 14:32:36 - IPSec: Gateway IP Address:IPv4=0.0.0.0,IPv6=0.0.0.0
    26/10/2021 14:32:36 - IPSec: Primary DNS Server: 8.8.8.8
    26/10/2021 14:32:36 - IPSec: Secondary DNS Server: 0.0.0.0
    26/10/2021 14:32:36 - IPSec: Primary WINS Server: 0.0.0.0
    26/10/2021 14:32:36 - IPSec: Secondary WINS Server: 0.0.0.0
    26/10/2021 14:32:36 - IPSec: Primary NCP SEM Server: 0.0.0.0
    26/10/2021 14:32:36 - IPSec: Secondary NCP SEM Server: 0.0.0.0
    26/10/2021 14:32:36 - IPSec: Primary DNS6 Server: 0.0.0.0
    26/10/2021 14:32:36 - IPSec: Secondary DNS6 Server: 0.0.0.0
    26/10/2021 14:32:36 - IPSec: Primary NCP SEM6 Server: 0.0.0.0
    26/10/2021 14:32:36 - IPSec: Secondary NCP SEM6 Server: 0.0.0.0
    26/10/2021 14:32:36 - IkeQuick: ike_phase2:send_id1:ID_IPV4_ADDR:pid=0,port=0,10.255.255.16
    26/10/2021 14:32:36 - IkeQuick: ike_phase2:send_id2:ID_IPV4_ADDR_SUBNET:pid=0,port=0,0.0.0.0 - 0.0.0.0
    26/10/2021 14:32:36 - Ike: ConRef=5, XMIT_MSG1_QUICK, name=Web-VPN, vpngw=x.x.x.x:4500
    26/10/2021 14:32:36 - Ike: ConRef=5, RECV_MSG2_QUICK, name=Web-VPN, vpngw=x.x.x.x:4500
    26/10/2021 14:32:36 - IkeQuick: Turning on PFS mode(Web-VPN) with group 19
    26/10/2021 14:32:36 - IkeQuick: ike_phase2:recv_id1:ID_IPV4_ADDR:pid=0,port=0,10.255.255.16
    26/10/2021 14:32:36 - IkeQuick: ike_phase2:recv_id2:ID_IPV4_ADDR_SUBNET:pid=0,port=0,0.0.0.0 - 0.0.0.0
    26/10/2021 14:32:36 - Ike: ConRef=5, XMIT_MSG3_QUICK, name=Web-VPN, vpngw=x.x.x.x:4500
    26/10/2021 14:32:36 - IkeQuick: phase2:name(Web-VPN) - connected
    26/10/2021 14:32:36 - SUCCESS: Ike phase 2 (quick mode) ready
    26/10/2021 14:32:36 - IPSec: Conref=5, Created an IPSEC SA with the following characteristics
    26/10/2021 14:32:36 - Gateway=x.x.x.x,NatdMode=1,Roamingcon=0
    26/10/2021 14:32:36 - srcranges=[10.255.255.16:0-10.255.255.16:65535],
    26/10/2021 14:32:36 - dstranges=[0.0.0.0:0-255.255.255.255:65535],
    26/10/2021 14:32:36 - IPSec:ConRef=5 connected: Effective ESP LifeDuration in Seconds = 2520,Effective IKE lifetime=20158
    26/10/2021 14:32:36 - IPSec: Connected to Web-VPN on channel 1.
    26/10/2021 14:32:36 - ncpadapter: set IP adapter properties
    26/10/2021 14:32:36 - ncpadapter: set ipv4 properties,ip4adr=10.255.255.16,ip4selneg=1
    26/10/2021 14:32:36 - ncpadapter: set_ip4_properties, manual=0
    26/10/2021 14:32:36 - System: Setting NCP virtual adapter linkstatus=1,laststate=0.
    26/10/2021 14:32:36 - System: Setting NCP virtual adapter linkstatus=1,laststate=1.
    26/10/2021 14:32:36 - PPP(Ipcp): connected to Web-VPN with IP Address: 10.255.255.16
    26/10/2021 14:32:36 - SUCCESS: IpSec connection ready
    26/10/2021 14:32:36 - IpsDial: From Ikemgr - Remote is deleting an IPSec SA, AdapterIndex=203
    26/10/2021 14:32:36 - Ike: phase1:name(Web-VPN) - ERROR - Delete indication received
    26/10/2021 14:32:36 - IPSec: Disconnected from Web-VPN on channel 1.
    26/10/2021 14:32:36 - ncpadapter: reset IP adapter properties
    26/10/2021 14:32:36 - ncpadapter: reset ipv4 properties,ip4adr=10.255.255.16
    26/10/2021 14:32:36 - ncpadapter: reset_ip4_properties, manual=0
    26/10/2021 14:32:36 - ipdhcp: xmit response,f_param.yiaddr=0.0.0.0
    26/10/2021 14:32:36 - osspecific_del_dns: cmdline=netsh interface ipv4 delete dnsservers 3 all validate=no
    26/10/2021 14:32:36 - INFO - MONITOR: Disconnected
    26/10/2021 14:32:36 - INFO - MONITOR: Media=LAN, Tx=0 Byte, Rx=0 Byte
    26/10/2021 14:32:37 - ncpadapter: reset IP adapter properties
    26/10/2021 14:32:37 - ncpadapter: reset ipv4 properties,ip4adr=0.0.0.0
    26/10/2021 14:32:37 - ncpadapter: reset_ip4_properties, manual=0
    26/10/2021 14:32:39 - System: Setting NCP virtual adapter linkstatus=0,laststate=1.


    Any help or guidance in getting this configured will be greatly appreciated.

    Thanking you in advance


    ------------------------------
    CHAYNE CHILES
    ------------------------------