我正试图从我的家里为一家公司配置一个IPSec虚拟专用网。该公司拥有SANET互联网服务提供商。我能够从拥有相同互联网服务提供商的另一家公司创建一个VPN连接。当我试图从另一个ISP (如Orange或Telekom )连接时,问题就开始了。下面是来自ZyWall的日志:
20120816 10:06:18:359 Default (SA Gateway-P1) SEND phase 1 Main Mode [SA] [VID] [VID] [VID] [VID] [VID]
20120816 10:06:18:375 Default (SA Gateway-P1) RECV phase 1 Main Mode [SA] [VID] [VID] [VID] [VID] [VID] [VID] [VID] [VID]
20120816 10:06:18:390 Default (SA Gateway-P1) SEND phase 1 Main Mode [KEY_EXCH] [NONCE] [NAT_D] [NAT_D]
20120816 10:06:18:718 Default (SA Gateway-P1) RECV phase 1 Main Mode [KEY_EXCH] [NONCE] [NAT_D] [NAT_D]
20120816 10:06:18:734 Default (SA Gateway-P1) SEND phase 1 Main Mode [HASH] [ID]
20120816 10:06:18:750 Default (SA Gateway-P1) RECV phase 1 Main Mode [HASH] [ID]
20120816 10:06:18:750 Default phase 1 done: initiator id test@test.sk, responder id 111.112.113.114
20120816 10:06:18:765 Default (SA Gateway-Tunnel-P2) SEND phase 2 Quick Mode [HASH] [SA] [KEY_EXCH] [NONCE] [ID] [ID]
20120816 10:06:18:953 Default (SA Gateway-Tunnel-P2) RECV phase 2 Quick Mode [HASH] [SA] [KEY_EXCH] [NONCE] [ID] [ID]
20120816 10:06:18:953 Default (SA Gateway-Tunnel-P2) SEND phase 2 Quick Mode [HASH]
20120816 10:06:48:968 Default (SA Gateway-P1) SEND Informational [HASH] [NOTIFY] type DPD_R_U_THERE
20120816 10:06:48:984 Default (SA Gateway-P1) RECV Informational [HASH] [NOTIFY] type DPD_R_U_THERE_ACKZyWall告诉我隧道已经打开了。但是我不能打开网络中的任何计算机。
My configuration at home:
ISP: Orange Optical connection
Terminal: GPON OPTICAL NETWORK TERMINAL G-25E
Router: TPLink TL-WR941N
--> SPI Firewall Enabled
--> VPN - IPSEC Passthrough Enabled我想知道这个问题是否不能出现在ISP方面(他以某种方式阻止了这种连接,因为在SANET中,它工作得很好),甚至在我的终端或路由器中也是如此。
我能查到什么?问题在哪里?
发布于 2012-08-17 07:36:09
解决问题:
我在本地网络(客户端192.168.1.X)和远程网络(服务器端192.168.1.X)上有相同的子网。所以发生了小小的碰撞。
https://serverfault.com/questions/418099
复制相似问题