ikev2起不来,看到一个报错是这个Parse KE payload failed.要怎么进行排查?
(0)
最佳答案
把配置发出来看看,用的什么模式啊
(0)
# domain test authorization-attribute ip-pool 1 authentication ike none # # local-user ikev2 class network service-type ike authorization-attribute user-role network-operator authorization-attribute ip-pool 1 # # ipsec transform-set 1 esp encryption-algorithm aes-cbc-128 esp authentication-algorithm sha1 # ipsec transform-set 2 esp encryption-algorithm 3des-cbc esp authentication-algorithm sha1 # ipsec transform-set 3 esp encryption-algorithm aes-cbc-128 esp authentication-algorithm sha384 # ipsec policy-template t 10 transform-set 1 2 3 ikev2-profile 1 reverse-route dynamic # ipsec policy 1 10 isakmp template t # ikev2 address-group 1 1.1.1.1 1.1.1.30 255.255.255.255 # ikev2 keychain 1 peer 1 address 0.0.0.0 0.0.0.0 pre-shared-key ciphertext $c$3$GMApG52xUPRaeyyOEog6fh/oSPtzC0NEJw== # ikev2 profile 1 authentication-method local pre-share authentication-method remote pre-share keychain 1 aaa authorization domain test username ikev2 match remote identity address 0.0.0.0 0.0.0.0 match remote identity fqdn test # ikev2 proposal 10 encryption aes-cbc-256 3des-cbc integrity sha384 sha1 sha256 dh group14 group5 group2 prf sha384 sha1 sha256 # ikev2 policy 10 proposal 10 #
对端协商的密钥一样吗
使用手机上的vpn去连接,可以看下这个https://www.h3c.com/cn/d_202404/2103360_30005_0.htm,配下去不行很怪
ssl vpn?
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
ssl vpn?