Skip to main content
anthony_hgh
New Member
April 12, 2016
Question

VPN IPSEC + Forticlient [ can't make it working]

  • April 12, 2016
  • 3 replies
  • 46489 views

Hi, 

 

I'm trying to use the VPN IPSEC provided with the Fortigate 80C appliance. 

On the client side, I want to use the FORTICLIENT software. 

 

My 80C is running with firware v5.2.6, build 711

My Client is running on Win7 Pro and FORTICLIENT 5.4.0.0780

 

I have configured the VPN tunnel using the wizard on the Fortigate. 

On the client side, the configuration has also been done. 

 

When I try to establish the connection, the following problem appears : 

- On the client : 

"VPN connection failed. Please check your configuration, network connection and pre-shared key then retry your connection. 

If the problem persists, contact your network administrator for help"

 

-On the fortigate : 

In "Log&Report" > "Event Log" > "VPN" section, I receive two errors (see attached picture VPN.GIF). 

 

 

It would be very helpful if anyone could help me making this VPN working :) 

 

Thanks in advance, 

 

Cheers. 

 

Anthony THOMAS. 

 

    3 replies

    anthony_hgh
    New Member
    April 12, 2016

    Below is the log [debug verbosity] from the FortiClient :

     

     

     

    3/29/2016 4:49:56 PM Notice FortiShield id=96851 user=DBLOG_SOURCE_SYSTEM msg="FortiShield is enabled" 3/29/2016 4:49:56 PM Notice VPN id=96602 msg="SSLVPN service started successfully." vpntype=ssl 3/29/2016 4:50:35 PM Warning FortiShield id=96855 msg="FortiShield blocked application: \\\\frignhghfile.igny.hgh.fr\\Activites_En_Cours\\Informatique\\Administration\\VPN\\Fortigate\\FortiClientOnlineInstaller.exe from modifying: \\REGISTRY\\MACHINE\\SOFTWARE\\Wow6432Node\\Fortinet\\FortiClient\\FA_UPDATE\\SoftwareUpdate\\IgnoreV" 3/29/2016 4:50:35 PM Warning FortiShield id=96855 msg="FortiShield blocked application: C:\\Program Files\\Bitdefender\\Endpoint Security\\EPSecurityService.exe from modifying: c:\\program files (x86)\\fortinet\\forticlient\\forticlient.exe:agc" 3/29/2016 4:52:51 PM Notice VPN id=96566 msg="negotiation information, loc_ip=192.168.3.61 loc_port=500 rem_ip=248.63.133.133 rem_port=500 out_if=0 vpn_tunnel=IPSEC_HGH action=negotiate init=local mode=aggressive stage=1 dir=outbound status=success Initiator: sent 248.63.133.133 aggressive mode message #1" vpntunnel=IPSEC_HGH vpntype=ipsec 3/29/2016 4:53:03 PM Warning VPN id=96561 msg="locip=192.168.3.61 locport=500 remip=248.63.133.133 remport=500 outif=0 vpntunnel=IPSEC_HGH status=negotiate_error No response from the peer, phase1 retransmit reaches maximum count..." vpntunnel=IPSEC_HGH vpntype=ipsec 3/29/2016 4:55:07 PM Notice VPN id=96566 msg="negotiation information, loc_ip=192.168.3.61 loc_port=500 rem_ip=248.63.133.133 rem_port=500 out_if=0 vpn_tunnel=IPSEC_HGH action=negotiate init=local mode=aggressive stage=1 dir=outbound status=success Initiator: sent 248.63.133.133 aggressive mode message #1" vpntunnel=IPSEC_HGH vpntype=ipsec 3/29/2016 4:55:19 PM Warning VPN id=96561 msg="locip=192.168.3.61 locport=500 remip=248.63.133.133 remport=500 outif=0 vpntunnel=IPSEC_HGH status=negotiate_error No response from the peer, phase1 retransmit reaches maximum count..." vpntunnel=IPSEC_HGH vpntype=ipsec 3/29/2016 4:58:23 PM Notice VPN id=96566 msg="negotiation information, loc_ip=192.168.3.61 loc_port=500 rem_ip=248.63.133.133 rem_port=500 out_if=0 vpn_tunnel=IPSEC_HGH action=negotiate init=local mode=aggressive stage=1 dir=outbound status=success Initiator: sent 248.63.133.133 aggressive mode message #1" vpntunnel=IPSEC_HGH vpntype=ipsec 3/29/2016 4:58:35 PM Warning VPN id=96561 msg="locip=192.168.3.61 locport=500 remip=248.63.133.133 remport=500 outif=0 vpntunnel=IPSEC_HGH status=negotiate_error No response from the peer, phase1 retransmit reaches maximum count..." vpntunnel=IPSEC_HGH vpntype=ipsec 3/29/2016 5:01:21 PM Notice VPN id=96566 msg="negotiation information, loc_ip=192.168.43.100 loc_port=500 rem_ip=248.63.133.133 rem_port=500 out_if=0 vpn_tunnel=IPSEC_HGH action=negotiate init=local mode=aggressive stage=1 dir=outbound status=success Initiator: sent 248.63.133.133 aggressive mode message " vpntunnel=IPSEC_HGH vpntype=ipsec 3/29/2016 5:01:33 PM Warning VPN id=96561 msg="locip=192.168.43.100 locport=500 remip=248.63.133.133 remport=500 outif=0 vpntunnel=IPSEC_HGH status=negotiate_error No response from the peer, phase1 retransmit reaches maximum count..." vpntunnel=IPSEC_HGH vpntype=ipsec 3/29/2016 5:07:58 PM Notice VPN id=96566 msg="negotiation information, loc_ip=192.168.43.100 loc_port=500 rem_ip=248.63.133.133 rem_port=500 out_if=0 vpn_tunnel=IPSEC_HGH action=negotiate init=local mode=aggressive stage=1 dir=outbound status=success Initiator: sent 248.63.133.133 aggressive mode message " vpntunnel=IPSEC_HGH vpntype=ipsec 3/29/2016 5:08:10 PM Warning VPN id=96561 msg="locip=192.168.43.100 locport=500 remip=248.63.133.133 remport=500 outif=0 vpntunnel=IPSEC_HGH status=negotiate_error No response from the peer, phase1 retransmit reaches maximum count..." vpntunnel=IPSEC_HGH vpntype=ipsec 3/29/2016 5:10:36 PM Notice VPN id=96566 msg="negotiation information, loc_ip=192.168.43.100 loc_port=500 rem_ip=248.63.133.133 rem_port=500 out_if=0 vpn_tunnel=IPSEC_HGH action=negotiate init=local mode=aggressive stage=1 dir=outbound status=success Initiator: sent 248.63.133.133 aggressive mode message " vpntunnel=IPSEC_HGH vpntype=ipsec 3/29/2016 5:10:48 PM Warning VPN id=96561 msg="locip=192.168.43.100 locport=500 remip=248.63.133.133 remport=500 outif=0 vpntunnel=IPSEC_HGH status=negotiate_error No response from the peer, phase1 retransmit reaches maximum count..." vpntunnel=IPSEC_HGH vpntype=ipsec 3/29/2016 5:16:41 PM Notice VPN id=96566 msg="negotiation information, loc_ip=192.168.43.100 loc_port=500 rem_ip=248.63.133.133 rem_port=500 out_if=0 vpn_tunnel=IPSEC_HGH action=negotiate init=local mode=aggressive stage=1 dir=outbound status=success Initiator: sent 248.63.133.133 aggressive mode message " vpntunnel=IPSEC_HGH vpntype=ipsec 3/29/2016 5:16:53 PM Warning VPN id=96561 msg="locip=192.168.43.100 locport=500 remip=248.63.133.133 remport=500 outif=0 vpntunnel=IPSEC_HGH status=negotiate_error No response from the peer, phase1 retransmit reaches maximum count..." vpntunnel=IPSEC_HGH vpntype=ipsec 3/29/2016 5:24:40 PM Notice VPN id=96566 msg="negotiation information, loc_ip=192.168.43.100 loc_port=500 rem_ip=248.63.133.133 rem_port=500 out_if=0 vpn_tunnel=IPSEC_HGH action=negotiate init=local mode=aggressive stage=1 dir=outbound status=success Initiator: sent 248.63.133.133 aggressive mode message " vpntunnel=IPSEC_HGH vpntype=ipsec 3/29/2016 5:24:52 PM Warning VPN id=96561 msg="locip=192.168.43.100 locport=500 remip=248.63.133.133 remport=500 outif=0 vpntunnel=IPSEC_HGH status=negotiate_error No response from the peer, phase1 retransmit reaches maximum count..." vpntunnel=IPSEC_HGH vpntype=ipsec 3/29/2016 5:43:51 PM Notice VPN id=96566 msg="negotiation information, loc_ip=192.168.43.100 loc_port=500 rem_ip=248.63.133.133 rem_port=500 out_if=0 vpn_tunnel=IPSEC_HGH action=negotiate init=local mode=aggressive stage=1 dir=outbound status=success Initiator: sent 248.63.133.133 aggressive mode message " vpntunnel=IPSEC_HGH vpntype=ipsec 3/29/2016 5:44:03 PM Warning VPN id=96561 msg="locip=192.168.43.100 locport=500 remip=248.63.133.133 remport=500 outif=0 vpntunnel=IPSEC_HGH status=negotiate_error No response from the peer, phase1 retransmit reaches maximum count..." vpntunnel=IPSEC_HGH vpntype=ipsec 3/29/2016 5:54:14 PM Warning VPN id=96561 msg="locip=192.168.43.100 locport=500 remip=248.63.133.133 remport=500 outif=0 vpntunnel=HGH status=negotiate_error No response from the peer, phase1 retransmit reaches maximum count..." vpntunnel=HGH vpntype=ipsec 3/29/2016 5:55:34 PM Notice VPN id=96566 msg="negotiation information, loc_ip=192.168.43.100 loc_port=500 rem_ip=248.63.133.133 rem_port=500 out_if=0 vpn_tunnel=HGH action=negotiate init=local mode=aggressive stage=1 dir=outbound status=success Initiator: sent 248.63.133.133 aggressive mode message #1 (OK" vpntunnel=HGH vpntype=ipsec 3/29/2016 5:55:46 PM Warning VPN id=96561 msg="locip=192.168.43.100 locport=500 remip=248.63.133.133 remport=500 outif=0 vpntunnel=HGH status=negotiate_error No response from the peer, phase1 retransmit reaches maximum count..." vpntunnel=HGH vpntype=ipsec 3/29/2016 6:04:17 PM Notice VPN id=96566 msg="negotiation information, loc_ip=192.168.43.100 loc_port=500 rem_ip=248.63.133.133 rem_port=500 out_if=0 vpn_tunnel=HGH action=negotiate init=local mode=aggressive stage=1 dir=outbound status=success Initiator: sent 248.63.133.133 aggressive mode message #1 (OK" vpntunnel=HGH vpntype=ipsec 3/29/2016 6:04:29 PM Warning VPN id=96561 msg="locip=192.168.43.100 locport=500 remip=248.63.133.133 remport=500 outif=0 vpntunnel=HGH status=negotiate_error No response from the peer, phase1 retransmit reaches maximum count..." vpntunnel=HGH vpntype=ipsec 3/29/2016 6:05:24 PM Notice VPN id=96566 msg="negotiation information, loc_ip=192.168.43.100 loc_port=500 rem_ip=248.63.133.133 rem_port=500 out_if=0 vpn_tunnel=HGH action=negotiate init=local mode=aggressive stage=1 dir=outbound status=success Initiator: sent 248.63.133.133 aggressive mode message #1 (OK" vpntunnel=HGH vpntype=ipsec 3/29/2016 6:05:36 PM Warning VPN id=96561 msg="locip=192.168.43.100 locport=500 remip=248.63.133.133 remport=500 outif=0 vpntunnel=HGH status=negotiate_error No response from the peer, phase1 retransmit reaches maximum count..." vpntunnel=HGH vpntype=ipsec 3/29/2016 6:08:39 PM Notice VPN id=96566 msg="negotiation information, loc_ip=192.168.43.100 loc_port=500 rem_ip=248.63.133.133 rem_port=500 out_if=0 vpn_tunnel=HGH action=negotiate init=local mode=aggressive stage=1 dir=outbound status=success Initiator: sent 248.63.133.133 aggressive mode message #1 (OK" vpntunnel=HGH vpntype=ipsec 3/29/2016 6:08:51 PM Warning VPN id=96561 msg="locip=192.168.43.100 locport=500 remip=248.63.133.133 remport=500 outif=0 vpntunnel=HGH status=negotiate_error No response from the peer, phase1 retransmit reaches maximum count..." vpntunnel=HGH vpntype=ipsec 3/31/2016 9:39:26 AM Notice VPN id=96566 msg="negotiation information, loc_ip=192.168.43.100 loc_port=500 rem_ip=248.63.133.133 rem_port=500 out_if=0 vpn_tunnel=HGH action=negotiate init=local mode=aggressive stage=1 dir=outbound status=success Initiator: sent 248.63.133.133 aggressive mode message #1 (OK" vpntunnel=HGH vpntype=ipsec 3/31/2016 9:39:38 AM Warning VPN id=96561 msg="locip=192.168.43.100 locport=500 remip=248.63.133.133 remport=500 outif=0 vpntunnel=HGH status=negotiate_error No response from the peer, phase1 retransmit reaches maximum count..." vpntunnel=HGH vpntype=ipsec 3/31/2016 9:42:44 AM Notice VPN id=96566 msg="negotiation information, loc_ip=192.168.43.100 loc_port=500 rem_ip=248.63.133.133 rem_port=500 out_if=0 vpn_tunnel=HGH action=negotiate init=local mode=aggressive stage=1 dir=outbound status=success Initiator: sent 248.63.133.133 aggressive mode message #1 (OK" vpntunnel=HGH vpntype=ipsec 3/31/2016 9:42:56 AM Warning VPN id=96561 msg="locip=192.168.43.100 locport=500 remip=248.63.133.133 remport=500 outif=0 vpntunnel=HGH status=negotiate_error No response from the peer, phase1 retransmit reaches maximum count..." vpntunnel=HGH vpntype=ipsec 3/31/2016 9:45:33 AM Notice VPN id=96566 msg="negotiation information, loc_ip=192.168.43.100 loc_port=4500 rem_ip=248.63.133.133 rem_port=4500 out_if=0 vpn_tunnel=HGH action=negotiate init=remote mode=xauth_client stage=0 dir=inbound status=success Responder: parsed 248.63.133.133 xauth_client mode messag" vpntunnel=HGH vpntype=ipsec 3/31/2016 9:45:49 AM Notice VPN (repeated 1 times in last 17 sec) id=96566 msg="negotiation information, loc_ip=192.168.43.100 loc_port=4500 rem_ip=248.63.133.133 rem_port=4500 out_if=0 vpn_tunnel=HGH action=negotiate init=remote mode=xauth_client stage=0 dir=inbound status=success Responder: parsed 248.63.133.133 xauth_client mode messag" vpntunnel=HGH vpntype=ipsec 3/31/2016 9:45:53 AM Warning VPN id=96563 msg="locip=192.168.43.100 locport=4500 remip=248.63.133.133 remport=4500 outif=0 vpntunnel=HGH status=negotiate_error Received delete payload from peer check xauth password." vpntunnel=HGH vpntype=ipsec 3/31/2016 9:47:07 AM Warning VPN id=96561 msg="locip=192.168.43.100 locport=500 remip=248.63.133.133 remport=500 outif=0 vpntunnel=HGH status=negotiate_error No response from the peer, phase1 retransmit reaches maximum count..." vpntunnel=HGH vpntype=ipsec 4/12/2016 11:48:17 AM Warning VPN id=96561 msg="locip=192.168.3.39 locport=500 remip=248.63.133.133 remport=500 outif=0 vpntunnel=HGH status=negotiate_error No response from the peer, phase1 retransmit reaches maximum count..." vpntunnel=HGH vpntype=ipsec 4/12/2016 11:50:27 AM Notice VPN id=96566 msg="negotiation information, loc_ip=192.168.3.39 loc_port=500 rem_ip=248.63.133.133 rem_port=500 out_if=0 vpn_tunnel=HGH action=negotiate init=local mode=aggressive stage=1 dir=outbound status=success Initiator: sent 248.63.133.133 aggressive mode message #1 (OK)" vpntunnel=HGH vpntype=ipsec 4/12/2016 11:50:39 AM Warning VPN id=96561 msg="locip=192.168.3.39 locport=500 remip=248.63.133.133 remport=500 outif=0 vpntunnel=HGH status=negotiate_error No response from the peer, phase1 retransmit reaches maximum count..." vpntunnel=HGH vpntype=ipsec 4/12/2016 1:27:21 PM Notice VPN id=96566 msg="negotiation information, loc_ip=192.168.3.39 loc_port=500 rem_ip=248.63.133.133 rem_port=500 out_if=0 vpn_tunnel=HGH action=negotiate init=local mode=aggressive stage=1 dir=outbound status=success Initiator: sent 248.63.133.133 aggressive mode message #1 (OK)" vpntunnel=HGH vpntype=ipsec 4/12/2016 1:27:33 PM Warning VPN id=96561 msg="locip=192.168.3.39 locport=500 remip=248.63.133.133 remport=500 outif=0 vpntunnel=HGH status=negotiate_error No response from the peer, phase1 retransmit reaches maximum count..." vpntunnel=HGH vpntype=ipsec 4/12/2016 1:56:01 PM Notice WebFilter date=2016-04-12 time=13:56:00 logver=1 type=traffic level=notice sessionid=31630964 hostname=StockUK-PC uid=8B937BC1481647A9851B2DB4D221FC9C devid=FCT8001179371077 fgtserial=N/A regip=N/A srcname=IEXPLORE.EXE srcproduct="Internet Explorer" srcip=N/A srcport=N/A direction=outbound destinationip=N/A remotename=universalinstaller.azurewebsites.net destinationport=80 user=Adminm proto=6 rcvdbyte=N/A sentbyte=N/A utmaction=userbrowsed utmevent=webfilter threat=N/A vd=N/A fctver=5.4.0.0780 os="Microsoft Windows 7 Professional Edition, 64-bit Service Pack 1 (build 7601)" usingpolicy="" service=http url=/installer.html?loc=US userinitiated=1 browsetime=5 4/12/2016 1:56:06 PM Notice WebFilter date=2016-04-12 time=13:56:05 logver=1 type=traffic level=notice sessionid=31630964 hostname=StockUK-PC uid=8B937BC1481647A9851B2DB4D221FC9C devid=FCT8001179371077 fgtserial=N/A regip=N/A srcname=IEXPLORE.EXE srcproduct="Internet Explorer" srcip=N/A srcport=N/A direction=outbound destinationip=N/A remotename=www.google.fr destinationport=443 user=Adminm proto=6 rcvdbyte=N/A sentbyte=N/A utmaction=userbrowsed utmevent=webfilter threat=N/A vd=N/A fctver=5.4.0.0780 os="Microsoft Windows 7 Professional Edition, 64-bit Service Pack 1 (build 7601)" usingpolicy="" service=https url=/?gws_rd=ssl userinitiated=1 browsetime=4 4/12/2016 1:56:10 PM Notice WebFilter date=2016-04-12 time=13:56:09 logver=1 type=traffic level=notice sessionid=31630964 hostname=StockUK-PC uid=8B937BC1481647A9851B2DB4D221FC9C devid=FCT8001179371077 fgtserial=N/A regip=N/A srcname=IEXPLORE.EXE srcproduct="Internet Explorer" srcip=N/A srcport=N/A direction=outbound destinationip=N/A remotename=www.google.fr destinationport=443 user=Adminm proto=6 rcvdbyte=N/A sentbyte=N/A utmaction=userbrowsed utmevent=webfilter threat=N/A vd=N/A fctver=5.4.0.0780 os="Microsoft Windows 7 Professional Edition, 64-bit Service Pack 1 (build 7601)" usingpolicy="" service=https url=/?gws_rd=ssl#q=nmap userinitiated=1 browsetime=4 4/12/2016 1:56:12 PM Notice WebFilter date=2016-04-12 time=13:56:11 logver=1 type=traffic level=notice sessionid=31630964 hostname=StockUK-PC uid=8B937BC1481647A9851B2DB4D221FC9C devid=FCT8001179371077 fgtserial=N/A regip=N/A srcname=IEXPLORE.EXE srcproduct="Internet Explorer" srcip=N/A srcport=N/A direction=outbound destinationip=N/A remotename=nmap.org destinationport=443 user=Adminm proto=6 rcvdbyte=N/A sentbyte=N/A utmaction=userbrowsed utmevent=webfilter threat=N/A vd=N/A fctver=5.4.0.0780 os="Microsoft Windows 7 Professional Edition, 64-bit Service Pack 1 (build 7601)" usingpolicy="" service=https url=/ userinitiated=1 browsetime=2 4/12/2016 1:56:22 PM Notice WebFilter date=2016-04-12 time=13:56:21 logver=1 type=traffic level=notice sessionid=31630964 hostname=StockUK-PC uid=8B937BC1481647A9851B2DB4D221FC9C devid=FCT8001179371077 fgtserial=N/A regip=N/A srcname=IEXPLORE.EXE srcproduct="Internet Explorer" srcip=N/A srcport=N/A direction=outbound destinationip=N/A remotename=nmap.org destinationport=443 user=Adminm proto=6 rcvdbyte=N/A sentbyte=N/A utmaction=userbrowsed utmevent=webfilter threat=N/A vd=N/A fctver=5.4.0.0780 os="Microsoft Windows 7 Professional Edition, 64-bit Service Pack 1 (build 7601)" usingpolicy="" service=https url=/download.html userinitiated=1 browsetime=9 4/12/2016 1:56:35 PM Notice WebFilter date=2016-04-12 time=13:56:34 logver=1 type=traffic level=notice sessionid=31630964 hostname=StockUK-PC uid=8B937BC1481647A9851B2DB4D221FC9C devid=FCT8001179371077 fgtserial=N/A regip=N/A srcname=IEXPLORE.EXE srcproduct="Internet Explorer" srcip=N/A srcport=N/A direction=outbound destinationip=N/A remotename=nmap.org destinationport=443 user=Adminm proto=6 rcvdbyte=N/A sentbyte=N/A utmaction=userbrowsed utmevent=webfilter threat=N/A vd=N/A fctver=5.4.0.0780 os="Microsoft Windows 7 Professional Edition, 64-bit Service Pack 1 (build 7601)" usingpolicy="" service=https url=/book/inst-windows.html userinitiated=1 browsetime=13 4/12/2016 1:56:53 PM Notice WebFilter date=2016-04-12 time=13:56:52 logver=1 type=traffic level=notice sessionid=31630964 hostname=StockUK-PC uid=8B937BC1481647A9851B2DB4D221FC9C devid=FCT8001179371077 fgtserial=N/A regip=N/A srcname=IEXPLORE.EXE srcproduct="Internet Explorer" srcip=N/A srcport=N/A direction=outbound destinationip=N/A remotename=nmap.org destinationport=443 user=Adminm proto=6 rcvdbyte=N/A sentbyte=N/A utmaction=userbrowsed utmevent=webfilter threat=N/A vd=N/A fctver=5.4.0.0780 os="Microsoft Windows 7 Professional Edition, 64-bit Service Pack 1 (build 7601)" usingpolicy="" service=https url=/download.html userinitiated=1 browsetime=18 4/12/2016 1:57:40 PM Notice WebFilter date=2016-04-12 time=13:57:39 logver=1 type=traffic level=notice sessionid=31630964 hostname=StockUK-PC uid=8B937BC1481647A9851B2DB4D221FC9C devid=FCT8001179371077 fgtserial=N/A regip=N/A srcname=IEXPLORE.EXE srcproduct="Internet Explorer" srcip=N/A srcport=N/A direction=outbound destinationip=N/A remotename=nmap.org destinationport=443 user=Adminm proto=6 rcvdbyte=N/A sentbyte=N/A utmaction=userbrowsed utmevent=webfilter threat=N/A vd=N/A fctver=5.4.0.0780 os="Microsoft Windows 7 Professional Edition, 64-bit Service Pack 1 (build 7601)" usingpolicy="" service=https url=/download.html userinitiated=1 browsetime=2 4/12/2016 1:57:55 PM Notice WebFilter date=2016-04-12 time=13:57:54 logver=1 type=traffic level=notice sessionid=31630964 hostname=StockUK-PC uid=8B937BC1481647A9851B2DB4D221FC9C devid=FCT8001179371077 fgtserial=N/A regip=N/A srcname=IEXPLORE.EXE srcproduct="Internet Explorer" srcip=N/A srcport=N/A direction=outbound destinationip=N/A remotename=www.msn.com destinationport=80 user=Adminm proto=6 rcvdbyte=N/A sentbyte=N/A utmaction=userbrowsed utmevent=webfilter threat=N/A vd=N/A fctver=5.4.0.0780 os="Microsoft Windows 7 Professional Edition, 64-bit Service Pack 1 (build 7601)" usingpolicy="" service=http url=/fr-fr/?ocid=iehp userinitiated=1 browsetime=2 4/12/2016 2:43:30 PM Notice WebFilter date=2016-04-12 time=14:43:29 logver=1 type=traffic level=notice sessionid=31630964 hostname=StockUK-PC uid=8B937BC1481647A9851B2DB4D221FC9C devid=FCT8001179371077 fgtserial=N/A regip=N/A srcname=IEXPLORE.EXE srcproduct="Internet Explorer" srcip=N/A srcport=N/A direction=outbound destinationip=N/A remotename=www.msn.com destinationport=80 user=Adminm proto=6 rcvdbyte=N/A sentbyte=N/A utmaction=userbrowsed utmevent=webfilter threat=N/A vd=N/A fctver=5.4.0.0780 os="Microsoft Windows 7 Professional Edition, 64-bit Service Pack 1 (build 7601)" usingpolicy="" service=http url=/fr-fr/?ocid=iehp userinitiated=1 browsetime=3 4/12/2016 2:43:36 PM Notice WebFilter date=2016-04-12 time=14:43:35 logver=1 type=traffic level=notice sessionid=31630964 hostname=StockUK-PC uid=8B937BC1481647A9851B2DB4D221FC9C devid=FCT8001179371077 fgtserial=N/A regip=N/A srcname=IEXPLORE.EXE srcproduct="Internet Explorer" srcip=N/A srcport=N/A direction=outbound destinationip=N/A remotename=www.google.fr destinationport=443 user=Adminm proto=6 rcvdbyte=N/A sentbyte=N/A utmaction=userbrowsed utmevent=webfilter threat=N/A vd=N/A fctver=5.4.0.0780 os="Microsoft Windows 7 Professional Edition, 64-bit Service Pack 1 (build 7601)" usingpolicy="" service=https url=/?gws_rd=ssl userinitiated=1 browsetime=6 4/12/2016 2:43:51 PM Notice WebFilter date=2016-04-12 time=14:43:50 logver=1 type=traffic level=notice sessionid=31630964 hostname=StockUK-PC uid=8B937BC1481647A9851B2DB4D221FC9C devid=FCT8001179371077 fgtserial=N/A regip=N/A srcname=IEXPLORE.EXE srcproduct="Internet Explorer" srcip=N/A srcport=N/A direction=outbound destinationip=N/A remotename=www.google.fr destinationport=443 user=Adminm proto=6 rcvdbyte=N/A sentbyte=N/A utmaction=userbrowsed utmevent=webfilter threat=N/A vd=N/A fctver=5.4.0.0780 os="Microsoft Windows 7 Professional Edition, 64-bit Service Pack 1 (build 7601)" usingpolicy="" service=https url=/?gws_rd=ssl#q=analyse+ports+ouverts userinitiated=1 browsetime=14 4/12/2016 2:44:36 PM Notice WebFilter date=2016-04-12 time=14:44:35 logver=1 type=traffic level=notice sessionid=31630964 hostname=StockUK-PC uid=8B937BC1481647A9851B2DB4D221FC9C devid=FCT8001179371077 fgtserial=N/A regip=N/A srcname=IEXPLORE.EXE srcproduct="Internet Explorer" srcip=N/A srcport=N/A direction=outbound destinationip=N/A remotename=openclassrooms.com destinationport=443 user=Adminm proto=6 rcvdbyte=N/A sentbyte=N/A utmaction=userbrowsed utmevent=webfilter threat=N/A vd=N/A fctver=5.4.0.0780 os="Microsoft Windows 7 Professional Edition, 64-bit Service Pack 1 (build 7601)" usingpolicy="" service=https url=/courses/introduction-au-scan-de-ports userinitiated=1 browsetime=45 4/12/2016 2:49:52 PM Notice WebFilter date=2016-04-12 time=14:49:51 logver=1 type=traffic level=notice sessionid=31630964 hostname=StockUK-PC uid=8B937BC1481647A9851B2DB4D221FC9C devid=FCT8001179371077 fgtserial=N/A regip=N/A srcname=IEXPLORE.EXE srcproduct="Internet Explorer" srcip=N/A srcport=N/A direction=outbound destinationip=N/A remotename=www.inoculer.com destinationport=80 user=Adminm proto=6 rcvdbyte=N/A sentbyte=N/A utmaction=userbrowsed utmevent=webfilter threat=N/A vd=N/A fctver=5.4.0.0780 os="Microsoft Windows 7 Professional Edition, 64-bit Service Pack 1 (build 7601)" usingpolicy="" service=http url=/scannerdeports.php userinitiated=1 browsetime=316 4/12/2016 3:02:01 PM Notice FortiShield id=96851 user=DBLOG_SOURCE_SYSTEM msg="FortiShield is enabled" 4/12/2016 3:02:01 PM Notice VPN id=96602 msg="SSLVPN service started successfully." vpntype=ssl 4/12/2016 4:28:35 PM Warning FortiShield id=96855 msg="FortiShield blocked application: C:\\Program Files\\Bitdefender\\Endpoint Security\\EPSecurityService.exe from modifying: c:\\program files (x86)\\fortinet\\forticlient\\forticlient.exe:agc" 4/12/2016 4:31:31 PM Notice VPN id=96566 msg="negotiation information, loc_ip=192.168.43.100 loc_port=500 rem_ip=248.63.133.133 rem_port=500 out_if=0 vpn_tunnel=HGH action=negotiate init=local mode=aggressive stage=1 dir=outbound status=success Initiator: sent 248.63.133.133 aggressive mode message #1 (OK" vpntunnel=HGH vpntype=ipsec 4/12/2016 4:31:34 PM Error VPN id=96567 msg="negotiation error, loc_ip=192.168.43.100 loc_port=4500 rem_ip=248.63.133.133 rem_port=4500 out_if=0 vpn_tunnel=HGH status=negotiate_error init=local mode=xauth_clinet stage=1 dir=inbound status=failureInitiator: parsed 248.63.133.133 aggressive mode message #1" vpntunnel=HGH vpntype=ipsec 4/12/2016 4:31:43 PM Warning VPN id=96561 msg="locip=192.168.43.100 locport=4500 remip=248.63.133.133 remport=4500 outif=0 vpntunnel=HGH status=negotiate_error No response from the peer, phase1 retransmit reaches maximum count..." vpntunnel=HGH vpntype=ipsec 4/12/2016 4:44:28 PM Notice VPN id=96566 msg="negotiation information, loc_ip=192.168.43.100 loc_port=500 rem_ip=248.63.133.133 rem_port=500 out_if=0 vpn_tunnel=HGH action=negotiate init=local mode=aggressive stage=1 dir=outbound status=success Initiator: sent 248.63.133.133 aggressive mode message #1 (OK" vpntunnel=HGH vpntype=ipsec 4/12/2016 4:44:28 PM Error VPN id=96567 msg="negotiation error, loc_ip=192.168.43.100 loc_port=4500 rem_ip=248.63.133.133 rem_port=4500 out_if=0 vpn_tunnel=HGH status=negotiate_error init=local mode=xauth_clinet stage=1 dir=inbound status=failureInitiator: parsed 248.63.133.133 aggressive mode message #1" vpntunnel=HGH vpntype=ipsec 4/12/2016 4:44:40 PM Warning VPN id=96561 msg="locip=192.168.43.100 locport=4500 remip=248.63.133.133 remport=4500 outif=0 vpntunnel=HGH status=negotiate_error No response from the peer, phase1 retransmit reaches maximum count..." vpntunnel=HGH vpntype=ipsec 4/12/2016 4:49:46 PM Notice WebFilter date=2016-04-12 time=16:49:44 logver=1 type=traffic level=notice sessionid=30647016 hostname=StockUK-PC uid=8B937BC1481647A9851B2DB4D221FC9C devid=FCT8001179371077 fgtserial=N/A regip=N/A srcname=IEXPLORE.EXE srcproduct="Internet Explorer" srcip=N/A srcport=N/A direction=outbound destinationip=N/A remotename=www.msn.com destinationport=80 user=Adminm proto=6 rcvdbyte=N/A sentbyte=N/A utmaction=userbrowsed utmevent=webfilter threat=N/A vd=N/A fctver=5.4.0.0780 os="Microsoft Windows 7 Professional Edition, 64-bit Service Pack 1 (build 7601)" usingpolicy="" service=http url=/fr-fr/?ocid=iehp userinitiated=1 browsetime=169 4/12/2016 5:02:01 PM Notice WebFilter date=2016-04-12 time=17:02:00 logver=1 type=traffic level=notice sessionid=30647016 hostname=StockUK-PC uid=8B937BC1481647A9851B2DB4D221FC9C devid=FCT8001179371077 fgtserial=N/A regip=N/A srcname=IEXPLORE.EXE srcproduct="Internet Explorer" srcip=N/A srcport=N/A direction=outbound destinationip=N/A remotename=www.msn.com destinationport=80 user=Adminm proto=6 rcvdbyte=N/A sentbyte=N/A utmaction=userbrowsed utmevent=webfilter threat=N/A vd=N/A fctver=5.4.0.0780 os="Microsoft Windows 7 Professional Edition, 64-bit Service Pack 1 (build 7601)" usingpolicy="" service=http url=/fr-fr/?ocid=iehp&AR=1 userinitiated=1 browsetime=1 4/12/2016 5:13:24 PM Notice VPN id=96566 msg="negotiation information, loc_ip=192.168.43.100 loc_port=500 rem_ip=248.63.133.133 rem_port=500 out_if=0 vpn_tunnel=HGH action=negotiate init=local mode=aggressive stage=1 dir=outbound status=success Initiator: sent 248.63.133.133 aggressive mode message #1 (OK" vpntunnel=HGH vpntype=ipsec 4/12/2016 5:13:36 PM Warning VPN id=96561 msg="locip=192.168.43.100 locport=500 remip=248.63.133.133 remport=500 outif=0 vpntunnel=HGH status=negotiate_error No response from the peer, phase1 retransmit reaches maximum count..." vpntunnel=HGH vpntype=ipsec 4/12/2016 5:15:50 PM Notice VPN id=96573 user=Adminm msg="VPN before logon was disabled" vpntype=ipsec 4/12/2016 5:15:50 PM Notice ESNAC id=96951 user=Adminm msg="Endpoint control policy synchronization was enabled" 4/12/2016 5:15:50 PM Notice Console id=96880 user=Adminm msg="User disabled WAN Acceleration" 4/12/2016 5:15:50 PM Warning SSOMA id=96982 user=Adminm msg="Single Sign-On Mobility Agent was disabled" 4/12/2016 5:15:50 PM Warning Console id=96840 user=Adminm msg="Fortiproxy is disabled" 4/12/2016 5:15:56 PM Debug Scheduler GUI change event 4/12/2016 5:15:56 PM Debug Update Update task is called with dwSession=-1 4/12/2016 5:15:56 PM Debug Update forticlient.fortinet.net 4/12/2016 5:15:56 PM Debug Update start_update_thread() called 4/12/2016 5:15:56 PM Debug Update Impersonated=0 4/12/2016 5:15:56 PM Debug Update update started... 4/12/2016 5:15:56 PM Debug Update update process sending request: 00000000FSCI00000000000000000000 4/12/2016 5:15:56 PM Debug Update update process sending request: 00000000FDNI00000000000000000000 4/12/2016 5:15:56 PM Debug Update update process sending request: 01000000FECT00000000000000000000 4/12/2016 5:15:56 PM Debug Update update process sending request: 05004000FVEN00800054009999999999 4/12/2016 5:15:56 PM Debug Update update process sending request: 05004000FCBN00000000009999999999 4/12/2016 5:15:56 PM Debug Update updatetask get virus info file failed 4/12/2016 5:15:58 PM Debug Scheduler GUI change event 4/12/2016 5:15:58 PM Debug Update scheduler called us 4/12/2016 5:15:58 PM Debug Update update process received object(1 of 3): FCPR 4/12/2016 5:15:58 PM Debug Update update process received object(2 of 3): FDNI 4/12/2016 5:15:58 PM Debug Update update process received object(3 of 3): FECT 4/12/2016 5:15:58 PM Debug Update update done 4/12/2016 5:15:58 PM Debug Update update thread exit 4/12/2016 5:15:58 PM Debug Update No update is available. 4/12/2016 5:15:59 PM Debug Scheduler FortiTrayApp : Received WM_USER_UPDATE_SUCCESS message, lParam=0x1 4/12/2016 5:15:59 PM Debug Scheduler GUI change event 4/12/2016 5:16:01 PM Debug ESNAC dwSilentReg false 4/12/2016 5:16:01 PM Debug ESNAC bFirstKA true 4/12/2016 5:16:01 PM Debug ESNAC Start searching for FGT 4/12/2016 5:16:01 PM Debug ESNAC Searching Default GW 4/12/2016 5:16:02 PM Debug ESNAC Timeout in select in SocketConnect 4/12/2016 5:16:02 PM Debug ESNAC Socket connect failed 4/12/2016 5:16:02 PM Debug ESNAC 192.168.43.1:8013, Secondary - 0 4/12/2016 5:16:02 PM Debug ESNAC End searching for FGT 4/12/2016 5:16:02 PM Debug Scheduler handle_processtermination() called 4/12/2016 5:16:02 PM Debug Scheduler child process terminates normally 4/12/2016 5:16:02 PM Debug Scheduler handle_processtermination() called 4/12/2016 5:16:02 PM Debug Scheduler child process terminates normally 4/12/2016 5:16:03 PM Debug Scheduler GUI change event 4/12/2016 5:16:07 PM Debug Scheduler (repeated 2 times in last 5 sec) GUI change event 4/12/2016 5:16:10 PM Debug Scheduler handle_processtermination() called 4/12/2016 5:16:10 PM Debug Scheduler child process terminates normally 4/12/2016 5:16:10 PM Debug Scheduler handle_processtermination() called 4/12/2016 5:16:10 PM Debug Scheduler child process terminates normally 4/12/2016 5:16:10 PM Debug Scheduler GUI change event 4/12/2016 5:16:14 PM Debug VPN hmac(modp1536) 4/12/2016 5:16:13 PM Debug VPN (repeated 1 times in last 0 sec) hmac(modp1536) 4/12/2016 5:16:14 PM Debug ESNAC IP Table Change 4/12/2016 5:16:16 PM Debug VPN configuration found for 248.63.133.133. 4/12/2016 5:16:16 PM Debug VPN IPsec-SA request for 248.63.133.133[500] queued due to no phase1 found. 4/12/2016 5:16:16 PM Debug VPN === 4/12/2016 5:16:16 PM Debug VPN initiate new phase 1 negotiation: 192.168.43.100[500]<=>248.63.133.133[500] 4/12/2016 5:16:16 PM Debug VPN begin Aggressive mode. 4/12/2016 5:16:16 PM Debug VPN new cookie: 7da4481851926523 4/12/2016 5:16:16 PM Debug VPN use ID type of IPv4_address 4/12/2016 5:16:16 PM Debug VPN compute DH's private. 4/12/2016 5:16:16 PM Debug VPN 66dce82c f1e01a82 6accfdb6 4f120cbe ca22bc9c 632f8ace c9d39027 2f6555d9 f10df6eb 484884a3 4086f8bb 5ba2be4a b3188e80 a66921b6 81a917d7 ff7d9605 d03e7746 426f7fd3 be2729b1 d1cfa2d3 93b48a17 cf235242 ef4a5255 dfc3e571 9869906a bd3b666e adb79c2c 776db914 ab150e8a bc86b95b e348c138 4fca2274 b0ef0d40 ab7b3d21 2bf74a31 3c8d0cb6 af2592ab a5e7ddae 0d5ce2e1 eb8caedd 778e6952 a59010fa c4e413e8 de008c4b 91669827 dbc8985c d49ed39c ff235173 4/12/2016 5:16:16 PM Debug VPN compute DH's public. 4/12/2016 5:16:16 PM Debug VPN 1e8d1d1c acc9300c 61571b3d 6f5f3bda 0da7a82c 8325a066 89e9b883 7c587ec4 ce22d8a8 2da3502c 43a8053e 80c38479 7e58269f bc7a80fc c9deb60b 28566056 678671bf 1d573cc7 5679927c de068aac ccdd4f23 9ff847b4 857f1dda ac104be6 c72dc860 31ae3508 45a8ca97 db4bdaf1 fbdbcfd3 8d5e72b8 db6b0232 b3869ffc c9e439df 6525213b d1bc74df 2d33a5bc 90bb4c29 b6f9051f c0460b06 21adc0a3 41e8365c b44c5d55 27e57b9f 191f0c24 14c926fd e30bf3de b4ef56f1 b4b4dd64 4/12/2016 5:16:16 PM Debug VPN authmethod is pre-shared key 4/12/2016 5:16:16 PM Debug VPN add payload of len 176, next type 4 4/12/2016 5:16:16 PM Debug VPN add payload of len 192, next type 10 4/12/2016 5:16:16 PM Debug VPN add payload of len 16, next type 5 4/12/2016 5:16:16 PM Debug VPN add payload of len 8, next type 13 4/12/2016 5:16:16 PM Debug VPN add payload of len 16, next type 13 4/12/2016 5:16:15 PM Debug VPN (repeated 3 times in last 0 sec) add payload of len 16, next type 13 4/12/2016 5:16:16 PM Debug VPN add payload of len 8, next type 13 4/12/2016 5:16:16 PM Debug VPN add payload of len 16, next type 13 4/12/2016 5:16:15 PM Debug VPN (repeated 1 times in last 0 sec) add payload of len 16, next type 13 4/12/2016 5:16:16 PM Debug VPN add payload of len 16, next type 0 4/12/2016 5:16:16 PM Debug VPN 588 bytes from 192.168.43.100[500] to 248.63.133.133[500] 4/12/2016 5:16:16 PM Debug VPN sockname 0.0.0.0[500] 4/12/2016 5:16:16 PM Debug VPN send packet from 192.168.43.100[500] 4/12/2016 5:16:16 PM Debug VPN send packet to 248.63.133.133[500] 4/12/2016 5:16:16 PM Debug VPN 1 times of 588 bytes message will be sent to 248.63.133.133[500] 4/12/2016 5:16:16 PM Debug VPN 7da44818 51926523 00000000 00000000 01100400 00000000 0000024c 040000b4 00000001 00000001 000000a8 01010004 03000028 01010000 800b0001 000c0004 00015180 80010007 800e0100 80030001 80020002 80040005 03000028 02010000 800b0001 000c0004 00015180 80010007 800e0100 80030001 80020002 8004000e 03000028 03010000 800b0001 000c0004 00015180 80010007 800e0100 80030001 80020004 80040005 00000028 04010000 800b0001 000c0004 00015180 80010007 800e0100 80030001 80020004 8004000e 0a0000c4 1e8d1d1c acc9300c 61571b3d 6f5f3bda 0da7a82c 8325a066 89e9b883 7c587ec4 ce22d8a8 2da3502c 43a8053e 80c38479 7e58269f bc7a80fc c9deb60b 28566056 678671bf 1d573cc7 5679927c de068aac ccdd4f23 9ff847b4 857f1dda ac104be6 c72dc860 31ae3508 45a8ca97 db4bdaf1 fbdbcfd3 8d5e72b8 db6b0232 b3869ffc c9e439df 6525213b d1bc74df 2d33a5bc 90bb4c29 b6f9051f c0460b06 21adc0a3 41e8365c b44c5d55 27e57b9f 191f0c24 14c926fd e30bf3de b4ef56f1 b4b4dd64 05000014 d4c4618c 5f780ba5 1a757558 dba0de4c 0d00000c 01000000 c0a82b64 0d000014 12f5f28c 457168a9 702d9fe2 74cc0 4/12/2016 5:16:16 PM Debug VPN resend phase1 packet 7da4481851926523:0000000000000000 4/12/2016 5:16:16 PM Notice VPN id=96566 msg="negotiation information, loc_ip=192.168.43.100 loc_port=500 rem_ip=248.63.133.133 rem_port=500 out_if=0 vpn_tunnel=HGH action=negotiate init=local mode=aggressive stage=1 dir=outbound status=success Initiator: sent 248.63.133.133 aggressive mode message #1 (OK" vpntunnel=HGH vpntype=ipsec 4/12/2016 5:16:17 PM Debug VPN CHKPH1THERE: no established ph1 handler found 4/12/2016 5:16:17 PM Debug VPN (repeated 1 times in last 1 sec) CHKPH1THERE: no established ph1 handler found 4/12/2016 5:16:19 PM Debug VPN 588 bytes from 192.168.43.100[500] to 248.63.133.133[500] 4/12/2016 5:16:19 PM Debug VPN sockname 0.0.0.0[500] 4/12/2016 5:16:19 PM Debug VPN send packet from 192.168.43.100[500] 4/12/2016 5:16:19 PM Debug VPN send packet to 248.63.133.133[500] 4/12/2016 5:16:19 PM Debug VPN 1 times of 588 bytes message will be sent to 248.63.133.133[500] 4/12/2016 5:16:19 PM Debug VPN 7da44818 51926523 00000000 00000000 01100400 00000000 0000024c 040000b4 00000001 00000001 000000a8 01010004 03000028 01010000 800b0001 000c0004 00015180 80010007 800e0100 80030001 80020002 80040005 03000028 02010000 800b0001 000c0004 00015180 80010007 800e0100 80030001 80020002 8004000e 03000028 03010000 800b0001 000c0004 00015180 80010007 800e0100 80030001 80020004 80040005 00000028 04010000 800b0001 000c0004 00015180 80010007 800e0100 80030001 80020004 8004000e 0a0000c4 1e8d1d1c acc9300c 61571b3d 6f5f3bda 0da7a82c 8325a066 89e9b883 7c587ec4 ce22d8a8 2da3502c 43a8053e 80c38479 7e58269f bc7a80fc c9deb60b 28566056 678671bf 1d573cc7 5679927c de068aac ccdd4f23 9ff847b4 857f1dda ac104be6 c72dc860 31ae3508 45a8ca97 db4bdaf1 fbdbcfd3 8d5e72b8 db6b0232 b3869ffc c9e439df 6525213b d1bc74df 2d33a5bc 90bb4c29 b6f9051f c0460b06 21adc0a3 41e8365c b44c5d55 27e57b9f 191f0c24 14c926fd e30bf3de b4ef56f1 b4b4dd64 05000014 d4c4618c 5f780ba5 1a757558 dba0de4c 0d00000c 01000000 c0a82b64 0d000014 12f5f28c 457168a9 702d9fe2 74cc0 4/12/2016 5:16:19 PM Debug VPN resend phase1 packet 7da4481851926523:0000000000000000 4/12/2016 5:16:19 PM Debug VPN CHKPH1THERE: no established ph1 handler found 4/12/2016 5:16:19 PM Debug VPN (repeated 1 times in last 1 sec) CHKPH1THERE: no established ph1 handler found 4/12/2016 5:16:21 PM Debug ESNAC Timeout in select in SocketConnect 4/12/2016 5:16:21 PM Debug ESNAC dwSilentReg false 4/12/2016 5:16:21 PM Debug ESNAC bFirstKA true 4/12/2016 5:16:21 PM Debug ESNAC Start searching for FGT 4/12/2016 5:16:21 PM Debug ESNAC Searching Default GW 4/12/2016 5:16:21 PM Debug VPN CHKPH1THERE: no established ph1 handler found 4/12/2016 5:16:21 PM Debug ESNAC IP Table Change 4/12/2016 5:16:22 PM Debug ESNAC Timeout in select in SocketConnect 4/12/2016 5:16:22 PM Debug ESNAC Socket connect failed 4/12/2016 5:16:22 PM Debug ESNAC 192.168.43.1:8013, Secondary - 0 4/12/2016 5:16:22 PM Debug ESNAC End searching for FGT 4/12/2016 5:16:22 PM Debug VPN 588 bytes from 192.168.43.100[500] to 248.63.133.133[500] 4/12/2016 5:16:22 PM Debug VPN sockname 0.0.0.0[500] 4/12/2016 5:16:22 PM Debug VPN send packet from 192.168.43.100[500] 4/12/2016 5:16:22 PM Debug VPN send packet to 248.63.133.133[500] 4/12/2016 5:16:22 PM Debug VPN 1 times of 588 bytes message will be sent to 248.63.133.133[500] 4/12/2016 5:16:22 PM Debug VPN 7da44818 51926523 00000000 00000000 01100400 00000000 0000024c 040000b4 00000001 00000001 000000a8 01010004 03000028 01010000 800b0001 000c0004 00015180 80010007 800e0100 80030001 80020002 80040005 03000028 02010000 800b0001 000c0004 00015180 80010007 800e0100 80030001 80020002 8004000e 03000028 03010000 800b0001 000c0004 00015180 80010007 800e0100 80030001 80020004 80040005 00000028 04010000 800b0001 000c0004 00015180 80010007 800e0100 80030001 80020004 8004000e 0a0000c4 1e8d1d1c acc9300c 61571b3d 6f5f3bda 0da7a82c 8325a066 89e9b883 7c587ec4 ce22d8a8 2da3502c 43a8053e 80c38479 7e58269f bc7a80fc c9deb60b 28566056 678671bf 1d573cc7 5679927c de068aac ccdd4f23 9ff847b4 857f1dda ac104be6 c72dc860 31ae3508 45a8ca97 db4bdaf1 fbdbcfd3 8d5e72b8 db6b0232 b3869ffc c9e439df 6525213b d1bc74df 2d33a5bc 90bb4c29 b6f9051f c0460b06 21adc0a3 41e8365c b44c5d55 27e57b9f 191f0c24 14c926fd e30bf3de b4ef56f1 b4b4dd64 05000014 d4c4618c 5f780ba5 1a757558 dba0de4c 0d00000c 01000000 c0a82b64 0d000014 12f5f28c 457168a9 702d9fe2 74cc0 4/12/2016 5:16:22 PM Debug VPN resend phase1 packet 7da4481851926523:0000000000000000 4/12/2016 5:16:22 PM Debug VPN CHKPH1THERE: no established ph1 handler found 4/12/2016 5:16:23 PM Debug VPN (repeated 2 times in last 2 sec) CHKPH1THERE: no established ph1 handler found 4/12/2016 5:16:25 PM Debug VPN 588 bytes from 192.168.43.100[500] to 248.63.133.133[500] 4/12/2016 5:16:25 PM Debug VPN sockname 0.0.0.0[500] 4/12/2016 5:16:25 PM Debug VPN send packet from 192.168.43.100[500] 4/12/2016 5:16:25 PM Debug VPN send packet to 248.63.133.133[500] 4/12/2016 5:16:25 PM Debug VPN 1 times of 588 bytes message will be sent to 248.63.133.133[500] 4/12/2016 5:16:25 PM Debug VPN 7da44818 51926523 00000000 00000000 01100400 00000000 0000024c 040000b4 00000001 00000001 000000a8 01010004 03000028 01010000 800b0001 000c0004 00015180 80010007 800e0100 80030001 80020002 80040005 03000028 02010000 800b0001 000c0004 00015180 80010007 800e0100 80030001 80020002 8004000e 03000028 03010000 800b0001 000c0004 00015180 80010007 800e0100 80030001 80020004 80040005 00000028 04010000 800b0001 000c0004 00015180 80010007 800e0100 80030001 80020004 8004000e 0a0000c4 1e8d1d1c acc9300c 61571b3d 6f5f3bda 0da7a82c 8325a066 89e9b883 7c587ec4 ce22d8a8 2da3502c 43a8053e 80c38479 7e58269f bc7a80fc c9deb60b 28566056 678671bf 1d573cc7 5679927c de068aac ccdd4f23 9ff847b4 857f1dda ac104be6 c72dc860 31ae3508 45a8ca97 db4bdaf1 fbdbcfd3 8d5e72b8 db6b0232 b3869ffc c9e439df 6525213b d1bc74df 2d33a5bc 90bb4c29 b6f9051f c0460b06 21adc0a3 41e8365c b44c5d55 27e57b9f 191f0c24 14c926fd e30bf3de b4ef56f1 b4b4dd64 05000014 d4c4618c 5f780ba5 1a757558 dba0de4c 0d00000c 01000000 c0a82b64 0d000014 12f5f28c 457168a9 702d9fe2 74cc0 4/12/2016 5:16:25 PM Debug VPN resend phase1 packet 7da4481851926523:0000000000000000 4/12/2016 5:16:25 PM Debug VPN CHKPH1THERE: no established ph1 handler found 4/12/2016 5:16:26 PM Debug VPN (repeated 2 times in last 2 sec) CHKPH1THERE: no established ph1 handler found 4/12/2016 5:16:28 PM Debug VPN phase1 negotiation failed due to time up. 7da4481851926523:0000000000000000 4/12/2016 5:16:28 PM Warning VPN id=96561 msg="locip=192.168.43.100 locport=500 remip=248.63.133.133 remport=500 outif=0 vpntunnel=HGH status=negotiate_error No response from the peer, phase1 retransmit reaches maximum count..." vpntunnel=HGH vpntype=ipsec 4/12/2016 5:16:28 PM Debug VPN an undead schedule has been deleted. 4/12/2016 5:16:31 PM Debug Scheduler handle_processtermination() called 4/12/2016 5:16:31 PM Debug Scheduler child process terminates normally 4/12/2016 5:16:33 PM Debug ESNAC Timeout in select in SocketConnect 4/12/2016 5:16:33 PM Debug ESNAC dwSilentReg false 4/12/2016 5:16:33 PM Debug ESNAC bFirstKA true 4/12/2016 5:16:33 PM Debug ESNAC Start searching for FGT 4/12/2016 5:16:33 PM Debug ESNAC Searching Default GW 4/12/2016 5:16:34 PM Debug ESNAC Timeout in select in SocketConnect 4/12/2016 5:16:34 PM Debug ESNAC Socket connect failed 4/12/2016 5:16:34 PM Debug ESNAC 192.168.43.1:8013, Secondary - 0 4/12/2016 5:16:34 PM Debug ESNAC End searching for FGT

     

     

    I hope it can be helpful for "someone who know how"!

     

    Thanks,

     

    anthony_hgh
    New Member
    April 13, 2016

    In the CLI , when I set the following commands

        diag debug app ike -1     diag debug enable

     

    Here are the results :   Connected   FG_HGH_IGNY # diag debug app ike -1   FG_HGH_IGNY # diag debug enable   FG_HGH_IGNY # ike 0: comes 80.215.129.4:31668->193.248.63.133:500,ifindex=21.... ike 0: IKEv1 exchange=Aggressive id=486fccdf3f2aa7b2/0000000000000000 len=588 ike 0: in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ike 0:486fccdf3f2aa7b2/0000000000000000:23: responder: aggressive mode get 1st message... ike 0:486fccdf3f2aa7b2/0000000000000000:23: VID CISCO-UNITY 12F5F28C457168A9702D9FE274CC0100 ike 0:486fccdf3f2aa7b2/0000000000000000:23: VID RFC 3947 4A131C81070358455C5728F20E95452F ike 0:486fccdf3f2aa7b2/0000000000000000:23: VID draft-ietf-ipsec-nat-t-ike-02 CD60464335DF21F87CFDB2FC68B6A448 ike 0:486fccdf3f2aa7b2/0000000000000000:23: VID draft-ietf-ipsec-nat-t-ike-02\n 90CB80913EBB696E086381B5EC427B1F ike 0:486fccdf3f2aa7b2/0000000000000000:23: VID draft-ietf-ipsra-isakmp-xauth-06.txt 09002689DFD6B712 ike 0:486fccdf3f2aa7b2/0000000000000000:23: VID DPD AFCAD71368A1F1C96B8696FC77570100 ike 0:486fccdf3f2aa7b2/0000000000000000:23: VID forticlient connect license 4C53427B6D465D1B337BB755A37A7FEF ike 0:486fccdf3f2aa7b2/0000000000000000:23: VID Fortinet Endpoint Control B4F01CA951E9DA8D0BAFBBD34AD3044E ike 0: cache rebuild start ike 0:HGH_IPSEC: cached as dynamic ike 0: cache rebuild done ike 0: IKEv1 Aggressive, comes 80.215.129.4:31668->193.248.63.133 21 ike 0:HGH_IPSEC: ignoring IKE request, no policy configured ike 0:486fccdf3f2aa7b2/0000000000000000:23: negotiation failure ike Negotiate ISAKMP SA Error: ike 0:486fccdf3f2aa7b2/0000000000000000:23: no SA proposal chosen ike 0: comes 80.215.129.4:31668->193.248.63.133:500,ifindex=21.... ike 0: IKEv1 exchange=Aggressive id=486fccdf3f2aa7b2/0000000000000000 len=588 ike 0: in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ike 0:486fccdf3f2aa7b2/0000000000000000:24: responder: aggressive mode get 1st message... ike 0:486fccdf3f2aa7b2/0000000000000000:24: VID CISCO-UNITY 12F5F28C457168A9702D9FE274CC0100 ike 0:486fccdf3f2aa7b2/0000000000000000:24: VID RFC 3947 4A131C81070358455C5728F20E95452F ike 0:486fccdf3f2aa7b2/0000000000000000:24: VID draft-ietf-ipsec-nat-t-ike-02 CD60464335DF21F87CFDB2FC68B6A448 ike 0:486fccdf3f2aa7b2/0000000000000000:24: VID draft-ietf-ipsec-nat-t-ike-02\n 90CB80913EBB696E086381B5EC427B1F ike 0:486fccdf3f2aa7b2/0000000000000000:24: VID draft-ietf-ipsra-isakmp-xauth-06.txt 09002689DFD6B712 ike 0:486fccdf3f2aa7b2/0000000000000000:24: VID DPD AFCAD71368A1F1C96B8696FC77570100 ike 0:486fccdf3f2aa7b2/0000000000000000:24: VID forticlient connect license 4C53427B6D465D1B337BB755A37A7FEF ike 0:486fccdf3f2aa7b2/0000000000000000:24: VID Fortinet Endpoint Control B4F01CA951E9DA8D0BAFBBD34AD3044E ike 0: IKEv1 Aggressive, comes 80.215.129.4:31668->193.248.63.133 21 ike 0:HGH_IPSEC: ignoring IKE request, no policy configured ike 0:486fccdf3f2aa7b2/0000000000000000:24: negotiation failure ike Negotiate ISAKMP SA Error: ike 0:486fccdf3f2aa7b2/0000000000000000:24: no SA proposal chosen ike 0: comes 80.215.129.4:31668->193.248.63.133:500,ifindex=21.... ike 0: IKEv1 exchange=Aggressive id=486fccdf3f2aa7b2/0000000000000000 len=588 ike 0: in 486FCCDF3F2AA7B2000000000000000001100400000000000000024C040000B40000000100000001000000A8010100040300002801010000800B0001000C00040001518080010007800E01008003000180020002800400050300002802010000800B0001000C00040001518080010007800E010080030001800200028004000E0300002803010000800B0001000C00040001518080010007800E01008003000180020004800400050000002804010000800B0001000C00040001518080010007800E010080030001800200048004000E0A0000C4B18624FE24DE5CFA5CD23027B57C112D68C8A242952FCC51570BE3EF907D341484B2F7BE2F7F4E077976531F5888EDCA80DA4FE61235E8F4BCE6FD5972B77BCBFE27FE66FD0F08F2E84DADAFDDE06F33819A931E4E143641D0CC48BF0CD9A62509CF7288FAE4058C5D873900CC3D2DBC87A3A0218EACD7C909AB0DE1F81529EBEF1DA23434F835FB52257C0963CC89D5EABDC2CA3DC4E25E74F5A8A8961C9D560AEF7B0427E8C1DD820EAE62A4BB64EC1F576ABFE06CFB1408C1611B7C3D1892050000148A00C6C6F84EFAA6519D6369A04BDEEA0D00000C01000000C0A82B640D00001412F5F28C457168A9702D9FE274CC01000D0000144A131C81070358455C5728F20E95452F0D000014CD60464335DF21F87CFDB2FC68B6A4480D00001490CB80913EBB696E086381B5EC427B1F0D00000C09002689DFD6B7120D000014AFCAD71368A1F1C96B8696FC775701000D0000144C53427B6D465D1B337BB755A37A7FEF00000014B4F01CA951E9DA8D0BAFBBD34AD3044E ike 0:486fccdf3f2aa7b2/0000000000000000:25: responder: aggressive mode get 1st message... ike 0:486fccdf3f2aa7b2/0000000000000000:25: VID CISCO-UNITY 12F5F28C457168A9702D9FE274CC0100 ike 0:486fccdf3f2aa7b2/0000000000000000:25: VID RFC 3947 4A131C81070358455C5728F20E95452F ike 0:486fccdf3f2aa7b2/0000000000000000:25: VID draft-ietf-ipsec-nat-t-ike-02 CD60464335DF21F87CFDB2FC68B6A448 ike 0:486fccdf3f2aa7b2/0000000000000000:25: VID draft-ietf-ipsec-nat-t-ike-02\n 90CB80913EBB696E086381B5EC427B1F ike 0:486fccdf3f2aa7b2/0000000000000000:25: VID draft-ietf-ipsra-isakmp-xauth-06.txt 09002689DFD6B712 ike 0:486fccdf3f2aa7b2/0000000000000000:25: VID DPD AFCAD71368A1F1C96B8696FC77570100 ike 0:486fccdf3f2aa7b2/0000000000000000:25: VID forticlient connect license 4C53427B6D465D1B337BB755A37A7FEF ike 0:486fccdf3f2aa7b2/0000000000000000:25: VID Fortinet Endpoint Control B4F01CA951E9DA8D0BAFBBD34AD3044E ike 0: IKEv1 Aggressive, comes 80.215.129.4:31668->193.248.63.133 21 ike 0:HGH_IPSEC: ignoring IKE request, no policy configured ike 0:486fccdf3f2aa7b2/0000000000000000:25: negotiation failure ike Negotiate ISAKMP SA Error: ike 0:486fccdf3f2aa7b2/0000000000000000:25: no SA proposal chosen ike 0: comes 80.215.129.4:31668->193.248.63.133:500,ifindex=21.... ike 0: IKEv1 exchange=Aggressive id=486fccdf3f2aa7b2/0000000000000000 len=588 ike 0: in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ike 0:486fccdf3f2aa7b2/0000000000000000:26: responder: aggressive mode get 1st message... ike 0:486fccdf3f2aa7b2/0000000000000000:26: VID CISCO-UNITY 12F5F28C457168A9702D9FE274CC0100 ike 0:486fccdf3f2aa7b2/0000000000000000:26: VID RFC 3947 4A131C81070358455C5728F20E95452F ike 0:486fccdf3f2aa7b2/0000000000000000:26: VID draft-ietf-ipsec-nat-t-ike-02 CD60464335DF21F87CFDB2FC68B6A448 ike 0:486fccdf3f2aa7b2/0000000000000000:26: VID draft-ietf-ipsec-nat-t-ike-02\n 90CB80913EBB696E086381B5EC427B1F ike 0:486fccdf3f2aa7b2/0000000000000000:26: VID draft-ietf-ipsra-isakmp-xauth-06.txt 09002689DFD6B712 ike 0:486fccdf3f2aa7b2/0000000000000000:26: VID DPD AFCAD71368A1F1C96B8696FC77570100 ike 0:486fccdf3f2aa7b2/0000000000000000:26: VID forticlient connect license 4C53427B6D465D1B337BB755A37A7FEF ike 0:486fccdf3f2aa7b2/0000000000000000:26: VID Fortinet Endpoint Control B4F01CA951E9DA8D0BAFBBD34AD3044E ike 0: IKEv1 Aggressive, comes 80.215.129.4:31668->193.248.63.133 21 ike 0:HGH_IPSEC: ignoring IKE request, no policy configured ike 0:486fccdf3f2aa7b2/0000000000000000:26: negotiation failure ike Negotiate ISAKMP SA Error: ike 0:486fccdf3f2aa7b2/0000000000000000:26: no SA proposal chosen ike shrank heap by 126976 bytes

    Jeff_FTNT
    Staff
    Staff
    April 13, 2016

    From FGT debug, it show up "ike 0:HGH_IPSEC: ignoring IKE request, no policy configured".    Try to set up Policy for ipsec.

     

    Mostly you just debug on FGT side, you may use Forticlient v5.2 for FGT v5.2, some default setting is changed. Thanks.

    Adrian
    New Member
    April 22, 2016

    Since you're actually using the FortiClient, why not use SSL VPN instead of IPsec ? Also, if your client is actually an iOS or OS X device, you wouldn't even need the Forticleint since the OS has built in support for Cisco style client IPsec VPN.

     

     

    Sunil_Panchal_NSE7
    New Member
    April 23, 2016

    Dear all,

     

        i have a strange problem regarding IPSEC VPN connection ,

    i have 140D with 5.4 OS running.

    i have created a IPSEC VPN connection for remote user but the problem is that .

    i am not able to connect vpn from my local wire(FastTelco in Kuwait) internet

    but i have another mobile internet 4G (Ooredo) for which vpn is working fine with any error

    when i saw log for cable connection it show DPD error so i disable it and it work for first time then when i want to connection with same cable internet it not connecting or show username ,password or preshared key is wrong.

    i dont know that is the problem , our ISP is saying there is no problem from there side.

    but from another internet 4G vpn is working like charm.

     

    can you suggest me what is the problem because we are going to deploy site to site VPN from our company to our remote site 

    this can cause big trouble to us.

     

    thanks

     

     

     

    Jeff_FTNT
    Staff
    Staff
    April 25, 2016

    Hi superindian,

    When test with local wire case, make sure phase1-interface have correct binding interface and correct routes. Thanks.

     

    Stanislav_Pshebylsky
    New Member
    April 27, 2016

    I have the same problem with Windows 7 Pro (latest updates) and my new Fortigate 100D, upgradet up to 5.4 b1011...

    ntsele
    New Member
    May 11, 2016

    I have the same problem; both SSL and IPSec are not connecting. I want to use SSL for the remote access to our server farm and IPSec for mobile phones' connection.