I have 2 DIR-330s configured with a site-to-site IPSec VPN which has been working with almost no hiccups for over 5 years. Suddenly this morning, the VPN gets torn down and then reconnects every minute or two. I found a thread (
http://forums.dlink.com/index.php?topic=8270.0) with similar behavior, but no solution. I did change the time server on 1 of the routers a week or so ago and their clocks WERE out of sync, but resetting both to be the same made no difference. I realize these routers haven't been supported for quite some time, but was hoping some VPN master might take a look at my logs and spot something.
I have copied a few (~100) lines from the logs from both DIR-330s for your perusal (tried to attach txt files but apparently that's a no-no here!)
(Note: at 14:44 the tunnel was up & running, then):
Site XXXX:
Jul 26 14:44:08 Debug Information IPSec "conn_XXXX" #2: deleting state (STATE_QUICK_I2)
Jul 26 14:44:21 Debug Information IPSec "conn_XXXX" #1: initiating Main Mode
Jul 26 14:44:21 Debug Information IPSec "conn_XXXX" #1: received Vendor ID payload [Dead Peer Detection]
Jul 26 14:44:21 Debug Information IPSec "conn_XXXX" #1: transition from state STATE_MAIN_I1 to state STATE_MAIN_I2
Jul 26 14:44:22 Debug Information IPSec "conn_XXXX" #1: transition from state STATE_MAIN_I2 to state STATE_MAIN_I3
Jul 26 14:44:22 Debug Information IPSec "conn_XXXX" #1: Main mode peer ID is ID_IPV4_ADDR: 'nnn.nnn.nnn.nnn'
Jul 26 14:44:22 Debug Information IPSec "conn_XXXX" #1: transition from state STATE_MAIN_I3 to state STATE_MAIN_I4
Jul 26 14:44:22 Debug Information IPSec "conn_XXXX" #1: ISAKMP SA established
Jul 26 14:44:22 Debug Information IPSec "conn_XXXX" #2: initiating Quick Mode PSK+ENCRYPT+TUNNEL
Jul 26 14:44:22 Debug Information IPSec "conn_XXXX" #2: Dead Peer Detection (RFC3706) enabled
Jul 26 14:44:28 Debug Information IPSec "conn_XXXX" #1: ignoring Delete SA payload: IPSEC SA not found (maybe expired)
Jul 26 14:44:28 Debug Information IPSec "conn_XXXX" #3: transition from state STATE_MAIN_R1 to state STATE_MAIN_R2
Jul 26 14:44:28 Debug Information IPSec "conn_XXXX" #3: Main mode peer ID is ID_IPV4_ADDR: 'nnn.nnn.nnn.nnn'
Jul 26 14:44:28 Debug Information IPSec "conn_XXXX" #3: transition from state STATE_MAIN_R2 to state STATE_MAIN_R3
Jul 26 14:44:28 Debug Information IPSec "conn_XXXX" #3: sent MR3, ISAKMP SA established
Jul 26 14:44:28 Debug Information IPSec "conn_XXXX" #4: responding to Quick Mode
Jul 26 14:44:28 Debug Information IPSec "conn_XXXX" #4: transition from state (null) to state STATE_QUICK_R1
Jul 26 14:44:28 Debug Information IPSec "conn_XXXX" #4: Dead Peer Detection (RFC3706) enabled
Jul 26 14:44:28 Debug Information IPSec "conn_XXXX" #4: transition from state STATE_QUICK_R1 to state STATE_QUICK_R2
Jul 26 14:44:28 Debug Information IPSec "conn_XXXX" #4: IPsec SA established
Jul 26 14:44:43 Debug Information IPSec "conn_XXXX" #2: deleting state (STATE_QUICK_I2)
Jul 26 14:44:56 Debug Information IPSec "conn_XXXX" #1: initiating Main Mode
Jul 26 14:44:56 Debug Information IPSec "conn_XXXX" #1: received Vendor ID payload [Dead Peer Detection]
Jul 26 14:44:57 Debug Information IPSec "conn_XXXX" #1: transition from state STATE_MAIN_I2 to state STATE_MAIN_I3
Jul 26 14:44:57 Debug Information IPSec "conn_XXXX" #1: Main mode peer ID is ID_IPV4_ADDR: 'nnn.nnn.nnn.nnn'
Jul 26 14:44:57 Debug Information IPSec "conn_XXXX" #1: transition from state STATE_MAIN_I3 to state STATE_MAIN_I4
Jul 26 14:44:57 Debug Information IPSec "conn_XXXX" #1: ISAKMP SA established
Jul 26 14:44:57 Debug Information IPSec "conn_XXXX" #2: initiating Quick Mode PSK+ENCRYPT+TUNNEL
Jul 26 14:44:57 Debug Information IPSec "conn_XXXX" #2: Dead Peer Detection (RFC3706) enabled
Jul 26 14:45:03 Debug Information IPSec "conn_XXXX" #1: ignoring Delete SA payload: IPSEC SA not found (maybe expired)
Jul 26 14:45:03 Debug Information IPSec "conn_XXXX" #3: transition from state STATE_MAIN_R1 to state STATE_MAIN_R2
Jul 26 14:45:03 Debug Information IPSec "conn_XXXX" #3: Main mode peer ID is ID_IPV4_ADDR: 'nnn.nnn.nnn.nnn'
Jul 26 14:45:03 Debug Information IPSec "conn_XXXX" #3: transition from state STATE_MAIN_R2 to state STATE_MAIN_R3
Jul 26 14:45:03 Debug Information IPSec "conn_XXXX" #3: sent MR3, ISAKMP SA established
Jul 26 14:45:03 Debug Information IPSec "conn_XXXX" #4: responding to Quick Mode
Jul 26 14:45:03 Debug Information IPSec "conn_XXXX" #4: transition from state (null) to state STATE_QUICK_R1
Jul 26 14:45:04 Debug Information IPSec "conn_XXXX" #4: Dead Peer Detection (RFC3706) enabled
Jul 26 14:45:04 Debug Information IPSec "conn_XXXX" #4: transition from state STATE_QUICK_R1 to state STATE_QUICK_R2
Jul 26 14:45:04 Debug Information IPSec "conn_XXXX" #4: IPsec SA established
Jul 26 14:46:38 Debug Information IPSec "conn_XXXX" #2: deleting state (STATE_QUICK_I2)
Jul 26 14:46:51 Debug Information IPSec "conn_XXXX" #1: initiating Main Mode
Jul 26 14:46:51 Debug Information IPSec "conn_XXXX" #1: received Vendor ID payload [Dead Peer Detection]
Jul 26 14:46:51 Debug Information IPSec "conn_XXXX" #1: transition from state STATE_MAIN_I2 to state STATE_MAIN_I3
Jul 26 14:46:52 Debug Information IPSec "conn_XXXX" #1: Main mode peer ID is ID_IPV4_ADDR: 'nnn.nnn.nnn.nnn'
Jul 26 14:46:52 Debug Information IPSec "conn_XXXX" #1: transition from state STATE_MAIN_I3 to state STATE_MAIN_I4
Jul 26 14:46:52 Debug Information IPSec "conn_XXXX" #1: ISAKMP SA established
Jul 26 14:46:52 Debug Information IPSec "conn_XXXX" #2: initiating Quick Mode PSK+ENCRYPT+TUNNEL
Jul 26 14:46:52 Debug Information IPSec "conn_XXXX" #2: Dead Peer Detection (RFC3706) enabled
Jul 26 14:46:58 Debug Information IPSec "conn_XXXX" #1: ignoring Delete SA payload: IPSEC SA not found (maybe expired)
Jul 26 14:46:58 Debug Information IPSec "conn_XXXX" #3: transition from state STATE_MAIN_R1 to state STATE_MAIN_R2
Jul 26 14:46:58 Debug Information IPSec "conn_XXXX" #3: Main mode peer ID is ID_IPV4_ADDR: 'nnn.nnn.nnn.nnn'
Jul 26 14:46:58 Debug Information IPSec "conn_XXXX" #3: transition from state STATE_MAIN_R2 to state STATE_MAIN_R3
Jul 26 14:46:58 Debug Information IPSec "conn_XXXX" #3: sent MR3, ISAKMP SA established
Jul 26 14:46:58 Debug Information IPSec "conn_XXXX" #4: responding to Quick Mode
Jul 26 14:46:58 Debug Information IPSec "conn_XXXX" #4: transition from state (null) to state STATE_QUICK_R1
Jul 26 14:46:58 Debug Information IPSec "conn_XXXX" #4: Dead Peer Detection (RFC3706) enabled
Jul 26 14:46:58 Debug Information IPSec "conn_XXXX" #4: transition from state STATE_QUICK_R1 to state STATE_QUICK_R2
Jul 26 14:46:58 Debug Information IPSec "conn_XXXX" #4: IPsec SA established
Jul 26 14:47:13 Debug Information IPSec "conn_XXXX" #1: deleting state (STATE_MAIN_I4)
Jul 26 14:47:27 Debug Information IPSec "conn_XXXX" #1: initiating Main Mode
Jul 26 14:47:27 Debug Information IPSec "conn_XXXX" #1: received Vendor ID payload [Dead Peer Detection]
Jul 26 14:47:27 Debug Information IPSec "conn_XXXX" #1: transition from state STATE_MAIN_I2 to state STATE_MAIN_I3
Jul 26 14:47:27 Debug Information IPSec "conn_XXXX" #1: Main mode peer ID is ID_IPV4_ADDR: 'nnn.nnn.nnn.nnn'
Jul 26 14:47:27 Debug Information IPSec "conn_XXXX" #1: transition from state STATE_MAIN_I3 to state STATE_MAIN_I4
Jul 26 14:47:27 Debug Information IPSec "conn_XXXX" #1: ISAKMP SA established
Jul 26 14:47:27 Debug Information IPSec "conn_XXXX" #2: initiating Quick Mode PSK+ENCRYPT+TUNNEL
Jul 26 14:47:27 Debug Information IPSec "conn_XXXX" #2: Dead Peer Detection (RFC3706) enabled
Jul 26 14:47:33 Debug Information IPSec "conn_XXXX" #1: ignoring Delete SA payload: IPSEC SA not found (maybe expired)
Jul 26 14:47:33 Debug Information IPSec "conn_XXXX" #3: transition from state STATE_MAIN_R1 to state STATE_MAIN_R2
Jul 26 14:47:34 Debug Information IPSec "conn_XXXX" #3: Main mode peer ID is ID_IPV4_ADDR: 'nnn.nnn.nnn.nnn'
Jul 26 14:47:34 Debug Information IPSec "conn_XXXX" #3: transition from state STATE_MAIN_R2 to state STATE_MAIN_R3
Jul 26 14:47:34 Debug Information IPSec "conn_XXXX" #3: sent MR3, ISAKMP SA established
Jul 26 14:47:34 Debug Information IPSec "conn_XXXX" #4: responding to Quick Mode
Jul 26 14:47:34 Debug Information IPSec "conn_XXXX" #4: transition from state (null) to state STATE_QUICK_R1
Jul 26 14:47:34 Debug Information IPSec "conn_XXXX" #4: Dead Peer Detection (RFC3706) enabled
Jul 26 14:47:34 Debug Information IPSec "conn_XXXX" #4: transition from state STATE_QUICK_R1 to state STATE_QUICK_R2
Jul 26 14:47:34 Debug Information IPSec "conn_XXXX" #4: IPsec SA established
Jul 26 14:49:08 Debug Information IPSec "conn_XXXX" #1: deleting state (STATE_MAIN_I4)
and Site YYYY:
Jul 26 14:44:08 Debug Information IPSec "conn_YYYY" #1: received Delete SA payload: replace IPSEC State #4 in 10 seconds
Jul 26 14:44:08 Debug Information IPSec "conn_YYYY" #1: received Delete SA payload: deleting IPSEC State #3
Jul 26 14:44:15 Debug Information IPSec "conn_YYYY" #4: could not find newest phase 1 state for DPD
Jul 26 14:44:18 Debug Information IPSec "conn_YYYY" #5: initiating Main Mode
Jul 26 14:44:18 Debug Information IPSec "conn_YYYY" #5: ERROR: asynchronous network error report on eth0 for message to nnn.nnn.nnn.nnn port 500, complainant nnn.nnn.nnn.nnn: Connection refused [errno 146, origin ICMP type 3 code 3 (not authenticate
Jul 26 14:44:21 Debug Information IPSec "conn_YYYY" #6: transition from state STATE_MAIN_R1 to state STATE_MAIN_R2
Jul 26 14:44:22 Debug Information IPSec "conn_YYYY" #6: Main mode peer ID is ID_IPV4_ADDR: 'nnn.nnn.nnn.nnn'
Jul 26 14:44:22 Debug Information IPSec "conn_YYYY" #6: transition from state STATE_MAIN_R2 to state STATE_MAIN_R3
Jul 26 14:44:22 Debug Information IPSec "conn_YYYY" #6: sent MR3, ISAKMP SA established
Jul 26 14:44:22 Debug Information IPSec "conn_YYYY" #7: responding to Quick Mode
Jul 26 14:44:22 Debug Information IPSec "conn_YYYY" #7: transition from state (null) to state STATE_QUICK_R1
Jul 26 14:44:22 Debug Information IPSec "conn_YYYY" #7: Dead Peer Detection (RFC3706) enabled
Jul 26 14:44:22 Debug Information IPSec "conn_YYYY" #7: transition from state STATE_QUICK_R1 to state STATE_QUICK_R2
Jul 26 14:44:22 Debug Information IPSec "conn_YYYY" #7: IPsec SA established
Jul 26 14:44:28 Debug Information IPSec "conn_YYYY" #5: received Vendor ID payload [Dead Peer Detection]
Jul 26 14:44:28 Debug Information IPSec "conn_YYYY" #5: transition from state STATE_MAIN_I1 to state STATE_MAIN_I2
Jul 26 14:44:28 Debug Information IPSec "conn_YYYY" #5: transition from state STATE_MAIN_I2 to state STATE_MAIN_I3
Jul 26 14:44:28 Debug Information IPSec "conn_YYYY" #5: Main mode peer ID is ID_IPV4_ADDR: 'nnn.nnn.nnn.nnn'
Jul 26 14:44:28 Debug Information IPSec "conn_YYYY" #8: Dead Peer Detection (RFC3706) enabled
Jul 26 14:44:28 Debug Information IPSec "conn_YYYY" #8: transition from state STATE_QUICK_I1 to state STATE_QUICK_I2
Jul 26 14:44:28 Debug Information IPSec "conn_YYYY" #8: sent QI2, IPsec SA established
Jul 26 14:44:43 Debug Information IPSec "conn_YYYY" #5: received Delete SA payload: replace IPSEC State #8 in 10 seconds
Jul 26 14:44:43 Debug Information IPSec "conn_YYYY" #5: received Delete SA payload: deleting IPSEC State #7
Jul 26 14:44:43 Debug Information IPSec "conn_YYYY" #5: received Delete SA payload: deleting ISAKMP State #5
Jul 26 14:44:53 Debug Information IPSec "conn_YYYY" #9: initiating Main Mode
Jul 26 14:44:53 Debug Information IPSec "conn_YYYY" #9: ERROR: asynchronous network error report on eth0 for message to nnn.nnn.nnn.nnn port 500, complainant nnn.nnn.nnn.nnn: Connection refused [errno 146, origin ICMP type 3 code 3 (not authenticate
Jul 26 14:44:57 Debug Information IPSec "conn_YYYY" #10: transition from state STATE_MAIN_R1 to state STATE_MAIN_R2
Jul 26 14:44:57 Debug Information IPSec "conn_YYYY" #10: Main mode peer ID is ID_IPV4_ADDR: 'nnn.nnn.nnn.nnn'
Jul 26 14:44:57 Debug Information IPSec "conn_YYYY" #10: transition from state STATE_MAIN_R2 to state STATE_MAIN_R3
Jul 26 14:44:57 Debug Information IPSec "conn_YYYY" #10: sent MR3, ISAKMP SA established
Jul 26 14:44:57 Debug Information IPSec "conn_YYYY" #11: responding to Quick Mode
Jul 26 14:44:57 Debug Information IPSec "conn_YYYY" #11: transition from state (null) to state STATE_QUICK_R1
Jul 26 14:44:57 Debug Information IPSec "conn_YYYY" #11: Dead Peer Detection (RFC3706) enabled
Jul 26 14:44:57 Debug Information IPSec "conn_YYYY" #11: transition from state STATE_QUICK_R1 to state STATE_QUICK_R2
Jul 26 14:44:57 Debug Information IPSec "conn_YYYY" #11: IPsec SA established
Jul 26 14:45:03 Debug Information IPSec "conn_YYYY" #9: received Vendor ID payload [Dead Peer Detection]
Jul 26 14:45:03 Debug Information IPSec "conn_YYYY" #9: transition from state STATE_MAIN_I1 to state STATE_MAIN_I2
Jul 26 14:45:03 Debug Information IPSec "conn_YYYY" #9: transition from state STATE_MAIN_I2 to state STATE_MAIN_I3
Jul 26 14:45:03 Debug Information IPSec "conn_YYYY" #9: Main mode peer ID is ID_IPV4_ADDR: 'nnn.nnn.nnn.nnn'
Jul 26 14:45:03 Debug Information IPSec "conn_YYYY" #9: transition from state STATE_MAIN_I3 to state STATE_MAIN_I4
Jul 26 14:45:03 Debug Information IPSec "conn_YYYY" #9: ISAKMP SA established
Jul 26 14:45:03 Debug Information IPSec "conn_YYYY" #12: initiating Quick Mode PSK+ENCRYPT+TUNNEL
Jul 26 14:45:03 Debug Information IPSec "conn_YYYY" #12: Dead Peer Detection (RFC3706) enabled
Jul 26 14:45:03 Debug Information IPSec "conn_YYYY" #12: transition from state STATE_QUICK_I1 to state STATE_QUICK_I2
Jul 26 14:45:03 Debug Information IPSec "conn_YYYY" #12: sent QI2, IPsec SA established
Jul 26 14:46:38 Debug Information IPSec "conn_YYYY" #9: received Delete SA payload: replace IPSEC State #12 in 10 seconds
Jul 26 14:46:38 Debug Information IPSec "conn_YYYY" #9: received Delete SA payload: deleting IPSEC State #11
Jul 26 14:46:38 Debug Information IPSec "conn_YYYY" #9: received Delete SA payload: deleting ISAKMP State #9
Jul 26 14:46:48 Debug Information IPSec "conn_YYYY" #13: initiating Main Mode
Jul 26 14:46:48 Debug Information IPSec "conn_YYYY" #13: ERROR: asynchronous network error report on eth0 for message to nnn.nnn.nnn.nnn port 500, complainant nnn.nnn.nnn.nnn: Connection refused [errno 146, origin ICMP type 3 code 3 (not authenticat
Jul 26 14:46:51 Debug Information IPSec "conn_YYYY" #14: transition from state STATE_MAIN_R1 to state STATE_MAIN_R2
Jul 26 14:46:51 Debug Information IPSec "conn_YYYY" #14: Main mode peer ID is ID_IPV4_ADDR: 'nnn.nnn.nnn.nnn'
Jul 26 14:46:51 Debug Information IPSec "conn_YYYY" #14: transition from state STATE_MAIN_R2 to state STATE_MAIN_R3
Jul 26 14:46:51 Debug Information IPSec "conn_YYYY" #14: sent MR3, ISAKMP SA established
Jul 26 14:46:51 Debug Information IPSec "conn_YYYY" #15: responding to Quick Mode
Jul 26 14:46:51 Debug Information IPSec "conn_YYYY" #15: transition from state (null) to state STATE_QUICK_R1
Jul 26 14:46:52 Debug Information IPSec "conn_YYYY" #15: Dead Peer Detection (RFC3706) enabled
Jul 26 14:46:52 Debug Information IPSec "conn_YYYY" #15: transition from state STATE_QUICK_R1 to state STATE_QUICK_R2
Jul 26 14:46:52 Debug Information IPSec "conn_YYYY" #15: IPsec SA established
Jul 26 14:46:58 Debug Information IPSec "conn_YYYY" #13: received Vendor ID payload [Dead Peer Detection]
Jul 26 14:46:58 Debug Information IPSec "conn_YYYY" #13: transition from state STATE_MAIN_I2 to state STATE_MAIN_I3
Jul 26 14:46:58 Debug Information IPSec "conn_YYYY" #13: Main mode peer ID is ID_IPV4_ADDR: 'nnn.nnn.nnn.nnn'
Jul 26 14:46:58 Debug Information IPSec "conn_YYYY" #13: transition from state STATE_MAIN_I3 to state STATE_MAIN_I4
Jul 26 14:46:58 Debug Information IPSec "conn_YYYY" #13: ISAKMP SA established
Jul 26 14:46:58 Debug Information IPSec "conn_YYYY" #16: initiating Quick Mode PSK+ENCRYPT+TUNNEL
Jul 26 14:46:58 Debug Information IPSec "conn_YYYY" #16: Dead Peer Detection (RFC3706) enabled
Jul 26 14:46:58 Debug Information IPSec "conn_YYYY" #16: transition from state STATE_QUICK_I1 to state STATE_QUICK_I2
Jul 26 14:46:58 Debug Information IPSec "conn_YYYY" #16: sent QI2, IPsec SA established
Jul 26 14:47:13 Debug Information IPSec "conn_YYYY" #13: received Delete SA payload: deleting IPSEC State #15
Jul 26 14:47:13 Debug Information IPSec "conn_YYYY" #14: received Delete SA payload: deleting ISAKMP State #14
Jul 26 14:47:23 Debug Information IPSec "conn_YYYY" #17: initiating Main Mode
Jul 26 14:47:23 Debug Information IPSec "conn_YYYY" #17: ERROR: asynchronous network error report on eth0 for message to nnn.nnn.nnn.nnn port 500, complainant nnn.nnn.nnn.nnn: Connection refused [errno 146, origin ICMP type 3 code 3 (not authenticat
Jul 26 14:47:27 Debug Information IPSec "conn_YYYY" #18: transition from state STATE_MAIN_R1 to state STATE_MAIN_R2
Jul 26 14:47:27 Debug Information IPSec "conn_YYYY" #18: Main mode peer ID is ID_IPV4_ADDR: 'nnn.nnn.nnn.nnn'
Jul 26 14:47:27 Debug Information IPSec "conn_YYYY" #18: transition from state STATE_MAIN_R2 to state STATE_MAIN_R3
Jul 26 14:47:27 Debug Information IPSec "conn_YYYY" #18: sent MR3, ISAKMP SA established
Jul 26 14:47:27 Debug Information IPSec "conn_YYYY" #19: responding to Quick Mode
Jul 26 14:47:27 Debug Information IPSec "conn_YYYY" #19: transition from state (null) to state STATE_QUICK_R1
Jul 26 14:47:27 Debug Information IPSec "conn_YYYY" #19: Dead Peer Detection (RFC3706) enabled
Jul 26 14:47:27 Debug Information IPSec "conn_YYYY" #19: transition from state STATE_QUICK_R1 to state STATE_QUICK_R2
Jul 26 14:47:27 Debug Information IPSec "conn_YYYY" #19: IPsec SA established
Jul 26 14:47:33 Debug Information IPSec "conn_YYYY" #17: received Vendor ID payload [Dead Peer Detection]
Jul 26 14:47:33 Debug Information IPSec "conn_YYYY" #17: transition from state STATE_MAIN_I1 to state STATE_MAIN_I2
Jul 26 14:47:33 Debug Information IPSec "conn_YYYY" #17: transition from state STATE_MAIN_I2 to state STATE_MAIN_I3
Jul 26 14:47:34 Debug Information IPSec "conn_YYYY" #17: Main mode peer ID is ID_IPV4_ADDR: 'nnn.nnn.nnn.nnn'
Jul 26 14:47:34 Debug Information IPSec "conn_YYYY" #17: transition from state STATE_MAIN_I3 to state STATE_MAIN_I4
Jul 26 14:47:34 Debug Information IPSec "conn_YYYY" #17: ISAKMP SA established
Jul 26 14:47:34 Debug Information IPSec "conn_YYYY" #20: initiating Quick Mode PSK+ENCRYPT+TUNNEL
Jul 26 14:47:34 Debug Information IPSec "conn_YYYY" #20: Dead Peer Detection (RFC3706) enabled
Jul 26 14:47:34 Debug Information IPSec "conn_YYYY" #20: transition from state STATE_QUICK_I1 to state STATE_QUICK_I2
Jul 26 14:47:34 Debug Information IPSec "conn_YYYY" #20: sent QI2, IPsec SA established
Jul 26 14:49:08 Debug Information IPSec "conn_YYYY" #17: received Delete SA payload: deleting IPSEC State #19
and so on and so on...
Any thoughts??