Junos OS

IMPORTANT MODERATION NOTICE

This community is currently under full moderation, meaning  all posts will be reviewed before appearing in the community. Please expect a brief delay—there is no need to post multiple times. If your post is rejected, you'll receive an email outlining the reason(s). We've implemented full moderation to control spam. Thank you for your patience and participation.



Secure Connect Fails connection

  • 1.  Secure Connect Fails connection

    Posted 10-26-2021 12:57
    Good afternoon

    I have followed this youtube guide https://www.youtube.com/watch?v=RsswMJcTDSg

    All seems to be the same and the config commits correctly

    Using the Secure connect app on a laptop i have it will not connect it fails a fair way into the connection

    26/10/2021 14:32:34 - MONITOR: Configuration download - Start configuration download (host: x.x.x.x realm: default)
    26/10/2021 14:32:34 - MONITOR: Configuration download - Login success
    26/10/2021 14:32:34 - MONITOR: Configuration download - Configuration time not changed
    26/10/2021 14:32:34 - MONITOR: Configuration download - Logout success
    26/10/2021 14:32:34 - MONITOR: Configuration download - Logout - no new configuration imported
    26/10/2021 14:32:34 - SUCCESS - MONITOR: Configuration download -> Configuration is up to date
    26/10/2021 14:32:34 - MONITOR: Configuration download -> Save credentials for "username"
    26/10/2021 14:32:34 - INFO - MONITOR: Configuration download -> Start vpn connection
    26/10/2021 14:32:35 - System: Setting NCP virtual adapter linkstatus=0,laststate=0.
    26/10/2021 14:32:35 - ncpadapter: reset IP adapter properties
    26/10/2021 14:32:35 - ncpadapter: reset ipv4 properties,ip4adr=0.0.0.0
    26/10/2021 14:32:35 - ncpadapter: reset_ip4_properties, manual=0
    26/10/2021 14:32:35 - System: DNSHandling=0
    26/10/2021 14:32:35 - IPSec: Start building connection
    26/10/2021 14:32:35 - IpsDial: connection time interface choice,LocIpa=192.168.18.82,AdapterIndex=203
    26/10/2021 14:32:35 - Ike: Opening connection in PATHFINDER mode : Web-VPN
    26/10/2021 14:32:35 - Ike: Outgoing connect request AGGRESSIVE mode - gateway=x.x.x.x : Web-VPN
    26/10/2021 14:32:35 - Ike: ConRef=5, XMIT_MSG1_AGGRESSIVE, name=Web-VPN, vpngw=x.x.x.x:500
    26/10/2021 14:32:35 - ike_phase1:send_id:ID_USER_FQDN:pid=0,port=0,vpn@xyz.com
    26/10/2021 14:32:35 - Ike: ConRef=5, Send NAT-D vendor ID,remprt=500
    26/10/2021 14:32:35 - Ike: ConRef=5, RECV_MSG2_AGGRESSIVE, adapterindex=203,name=Web-VPN, remote ip:port=x.x.x.x:500,local ip:port=192.168.18.82:10952
    26/10/2021 14:32:35 - Ike: IKE phase I: Setting LifeTime to 28800 seconds
    26/10/2021 14:32:35 - Ike: Turning on XAUTH mode - Web-VPN
    26/10/2021 14:32:35 - Ike: IkeSa1 negotiated with the following properties -
    26/10/2021 14:32:35 - Authentication=XAUTH_INIT_PSK,Encryption=AES,Hash=SHA_256,DHGroup=19,KeyLen=256
    26/10/2021 14:32:35 - Ike: Web-VPN ->Support for NAT-T version - 9
    26/10/2021 14:32:35 - Ike: Turning on NATD mode - Web-VPN - 1
    26/10/2021 14:32:35 - IPSec: Final Tunnel EndPoint is=x.x.x.x
    26/10/2021 14:32:35 - Ike: ConRef=5, Remote peer is a Juniper Networks
    26/10/2021 14:32:35 - Ike: ike_phase1:recv_id:ID_IPV4_ADDR:pid=0,port=0,x.x.x.x
    26/10/2021 14:32:35 - Ike: ConRef=5, XMIT_MSG3_AGGRESSIVE, name=Web-VPN, vpngw=x.x.x.x:4500
    26/10/2021 14:32:35 - Ike: IkeSa1 negotiated with the following properties -
    26/10/2021 14:32:35 - Authentication=XAUTH_INIT_PSK,Encryption=AES,Hash=SHA_256,DHGroup=19,KeyLen=256
    26/10/2021 14:32:35 - Ike: Turning on DPD mode - Web-VPN
    26/10/2021 14:32:35 - Ike: phase1:name(Web-VPN) - connected
    26/10/2021 14:32:35 - SUCCESS: IKE phase 1 ready
    26/10/2021 14:32:35 - IPSec: Phase1 is Ready,AdapterIndex=203,IkeIndex=5,LocTepIpAdr=192.168.18.82,AltRekey=1
    26/10/2021 14:32:35 - Ike: ConRef=5, RECV_XAUTH_REQUEST, name=Web-VPN, vpngw=x.x.x.x:4500
    26/10/2021 14:32:35 - Ike: ConRef=5, XMIT_XAUTH_REPLY, name=Web-VPN, vpngw=x.x.x.x:4500
    26/10/2021 14:32:35 - Ike: ConRef=5, RECV_XAUTH_SET, name=Web-VPN, vpngw=x.x.x.x:4500
    26/10/2021 14:32:35 - Ike: ConRef=5, XMIT_XAUTH_ACK, name=Web-VPN, vpngw=x.x.x.x:4500
    26/10/2021 14:32:35 - IkeCfg: name <Web-VPN> - IkeXauth: enter state open
    26/10/2021 14:32:35 - SUCCESS: Ike Extended Authentication is ready
    26/10/2021 14:32:35 - IkeCfg: RECV_IKECFG_SET - Web-VPN
    26/10/2021 14:32:35 - IkeCfg: XMIT_IKECFG_ACK - Web-VPN
    26/10/2021 14:32:35 - IkeCfg: name <Web-VPN> - IkeXauth: enter state open
    26/10/2021 14:32:35 - SUCCESS: Ike Extended Authentication is ready
    26/10/2021 14:32:36 - IPSec: Quick Mode is Ready: IkeIndex=5,VpnSrcPort=10954
    26/10/2021 14:32:36 - IPSec: Assigned IP Address:IPv4=10.255.255.16,IPv6=0.0.0.0
    26/10/2021 14:32:36 - IPSec: Assigned IP Network Mask:IPv4=255.255.255.255,IPv6=0.0.0.0
    26/10/2021 14:32:36 - IPSec: Gateway IP Address:IPv4=0.0.0.0,IPv6=0.0.0.0
    26/10/2021 14:32:36 - IPSec: Primary DNS Server: 8.8.8.8
    26/10/2021 14:32:36 - IPSec: Secondary DNS Server: 0.0.0.0
    26/10/2021 14:32:36 - IPSec: Primary WINS Server: 0.0.0.0
    26/10/2021 14:32:36 - IPSec: Secondary WINS Server: 0.0.0.0
    26/10/2021 14:32:36 - IPSec: Primary NCP SEM Server: 0.0.0.0
    26/10/2021 14:32:36 - IPSec: Secondary NCP SEM Server: 0.0.0.0
    26/10/2021 14:32:36 - IPSec: Primary DNS6 Server: 0.0.0.0
    26/10/2021 14:32:36 - IPSec: Secondary DNS6 Server: 0.0.0.0
    26/10/2021 14:32:36 - IPSec: Primary NCP SEM6 Server: 0.0.0.0
    26/10/2021 14:32:36 - IPSec: Secondary NCP SEM6 Server: 0.0.0.0
    26/10/2021 14:32:36 - IkeQuick: ike_phase2:send_id1:ID_IPV4_ADDR:pid=0,port=0,10.255.255.16
    26/10/2021 14:32:36 - IkeQuick: ike_phase2:send_id2:ID_IPV4_ADDR_SUBNET:pid=0,port=0,0.0.0.0 - 0.0.0.0
    26/10/2021 14:32:36 - Ike: ConRef=5, XMIT_MSG1_QUICK, name=Web-VPN, vpngw=x.x.x.x:4500
    26/10/2021 14:32:36 - Ike: ConRef=5, RECV_MSG2_QUICK, name=Web-VPN, vpngw=x.x.x.x:4500
    26/10/2021 14:32:36 - IkeQuick: Turning on PFS mode(Web-VPN) with group 19
    26/10/2021 14:32:36 - IkeQuick: ike_phase2:recv_id1:ID_IPV4_ADDR:pid=0,port=0,10.255.255.16
    26/10/2021 14:32:36 - IkeQuick: ike_phase2:recv_id2:ID_IPV4_ADDR_SUBNET:pid=0,port=0,0.0.0.0 - 0.0.0.0
    26/10/2021 14:32:36 - Ike: ConRef=5, XMIT_MSG3_QUICK, name=Web-VPN, vpngw=x.x.x.x:4500
    26/10/2021 14:32:36 - IkeQuick: phase2:name(Web-VPN) - connected
    26/10/2021 14:32:36 - SUCCESS: Ike phase 2 (quick mode) ready
    26/10/2021 14:32:36 - IPSec: Conref=5, Created an IPSEC SA with the following characteristics
    26/10/2021 14:32:36 - Gateway=x.x.x.x,NatdMode=1,Roamingcon=0
    26/10/2021 14:32:36 - srcranges=[10.255.255.16:0-10.255.255.16:65535],
    26/10/2021 14:32:36 - dstranges=[0.0.0.0:0-255.255.255.255:65535],
    26/10/2021 14:32:36 - IPSec:ConRef=5 connected: Effective ESP LifeDuration in Seconds = 2520,Effective IKE lifetime=20158
    26/10/2021 14:32:36 - IPSec: Connected to Web-VPN on channel 1.
    26/10/2021 14:32:36 - ncpadapter: set IP adapter properties
    26/10/2021 14:32:36 - ncpadapter: set ipv4 properties,ip4adr=10.255.255.16,ip4selneg=1
    26/10/2021 14:32:36 - ncpadapter: set_ip4_properties, manual=0
    26/10/2021 14:32:36 - System: Setting NCP virtual adapter linkstatus=1,laststate=0.
    26/10/2021 14:32:36 - System: Setting NCP virtual adapter linkstatus=1,laststate=1.
    26/10/2021 14:32:36 - PPP(Ipcp): connected to Web-VPN with IP Address: 10.255.255.16
    26/10/2021 14:32:36 - SUCCESS: IpSec connection ready
    26/10/2021 14:32:36 - IpsDial: From Ikemgr - Remote is deleting an IPSec SA, AdapterIndex=203
    26/10/2021 14:32:36 - Ike: phase1:name(Web-VPN) - ERROR - Delete indication received
    26/10/2021 14:32:36 - IPSec: Disconnected from Web-VPN on channel 1.
    26/10/2021 14:32:36 - ncpadapter: reset IP adapter properties
    26/10/2021 14:32:36 - ncpadapter: reset ipv4 properties,ip4adr=10.255.255.16
    26/10/2021 14:32:36 - ncpadapter: reset_ip4_properties, manual=0
    26/10/2021 14:32:36 - ipdhcp: xmit response,f_param.yiaddr=0.0.0.0
    26/10/2021 14:32:36 - osspecific_del_dns: cmdline=netsh interface ipv4 delete dnsservers 3 all validate=no
    26/10/2021 14:32:36 - INFO - MONITOR: Disconnected
    26/10/2021 14:32:36 - INFO - MONITOR: Media=LAN, Tx=0 Byte, Rx=0 Byte
    26/10/2021 14:32:37 - ncpadapter: reset IP adapter properties
    26/10/2021 14:32:37 - ncpadapter: reset ipv4 properties,ip4adr=0.0.0.0
    26/10/2021 14:32:37 - ncpadapter: reset_ip4_properties, manual=0
    26/10/2021 14:32:39 - System: Setting NCP virtual adapter linkstatus=0,laststate=1.


    Any help or guidance in getting this configured will be greatly appreciated.

    Thanking you in advance


    ------------------------------
    CHAYNE CHILES
    ------------------------------