VPN error in logs every few mins, everything works but
-
I got Sonicwall TZ400 on one end with Win Server and Blue Iris Server and pfSense with 2 cameras connected to Blue Iris and printer to Win Server
About a week ago it began showing an error in logs on both ends. VPN works fine but sometimes I have to restart VPN for cameras/printer to work again but error doesn't go away. We have now 6-10 people working remotely because of COVID-19 that connect to Sonicwall VPN. May be the load causes it? I have Hub-and-Spoke type of VPN going on because TZ 400 supports only 20.
Here are the logs:
Apr 9 01:25:39 charon 13[IKE] <con2000|979> received retransmit of request with ID 1944345303, but no response to retransmit
Apr 9 01:25:39 charon 13[NET] <con2000|979> received packet: from x.x.x.x[500] to z.z.z.z[500] (300 bytes)
Apr 9 01:25:22 charon 13[IKE] <con2000|979> received retransmit of request with ID 1944345303, but no response to retransmit
Apr 9 01:25:22 charon 13[NET] <con2000|979> received packet: from x.x.x.x[500] to z.z.z.z[500] (300 bytes)
Apr 9 01:25:13 charon 13[IKE] <con2000|979> received retransmit of request with ID 1944345303, but no response to retransmit
Apr 9 01:25:13 charon 13[NET] <con2000|979> received packet: from x.x.x.x[500] to z.z.z.z[500] (300 bytes)
Apr 9 01:25:08 charon 13[IKE] <con2000|979> nothing to initiate
Apr 9 01:25:08 charon 13[IKE] <con2000|979> activating new tasks
Apr 9 01:25:08 charon 13[NET] <con2000|979> sending packet: from x.x.x.x[500] to z.z.z.z[500] (76 bytes)
Apr 9 01:25:08 charon 13[ENC] <con2000|979> generating INFORMATIONAL_V1 request 148625942 [ HASH N(INVAL_ID) ]
Apr 9 01:25:08 charon 13[IKE] <con2000|979> activating INFORMATIONAL task
Apr 9 01:25:08 charon 13[IKE] <con2000|979> activating new tasks
Apr 9 01:25:08 charon 13[IKE] <con2000|979> queueing INFORMATIONAL task
---->Apr 9 01:25:08 charon 13[IKE] <con2000|979> no matching CHILD_SA config found <----
Apr 9 01:25:08 charon 13[CFG] <con2000|979> 192.168.2.0/24|/0
Apr 9 01:25:08 charon 13[CFG] <con2000|979> proposing traffic selectors for other:
Apr 9 01:25:08 charon 13[CFG] <con2000|979> 192.168.10.68/32|/0
Apr 9 01:25:08 charon 13[CFG] <con2000|979> proposing traffic selectors for us:
Apr 9 01:25:08 charon 13[CFG] <con2000|979> 192.168.100.101/32|/0
Apr 9 01:25:08 charon 13[CFG] <con2000|979> proposing traffic selectors for other:
Apr 9 01:25:08 charon 13[CFG] <con2000|979> 192.168.10.48/32|/0
Apr 9 01:25:08 charon 13[CFG] <con2000|979> proposing traffic selectors for us:
Apr 9 01:25:08 charon 13[CFG] <con2000|979> 192.168.100.101/32|/0
Apr 9 01:25:08 charon 13[CFG] <con2000|979> proposing traffic selectors for other:
Apr 9 01:25:08 charon 13[CFG] <con2000|979> 192.168.10.49/32|/0
Apr 9 01:25:08 charon 13[CFG] <con2000|979> proposing traffic selectors for us:
Apr 9 01:25:08 charon 13[CFG] <con2000|979> looking for a child config for 192.168.10.68/32|/0 === 192.168.100.101/32|/0
Apr 9 01:25:08 charon 13[ENC] <con2000|979> parsed QUICK_MODE request 1944345303 [ HASH SA No KE ID ID ]
Apr 9 01:25:08 charon 13[NET] <con2000|979> received packet: from x.x.x.x[500] to z.z.z.z[500] (300 bytes)
Apr 9 01:25:00 charon 10[CFG] vici client 131028 disconnected
Apr 9 01:25:00 charon 10[CFG] vici client 131028 requests: list-sas
Apr 9 01:25:00 charon 13[CFG] vici client 131028 registered for: list-sa
Apr 9 01:25:00 charon 13[CFG] vici client 131028 connected
Apr 9 01:24:47 charon 12[CFG] vici client 131027 disconnected
Apr 9 01:24:47 charon 13[CFG] vici client 131027 requests: list-sas
Apr 9 01:24:47 charon 12[CFG] vici client 131027 registered for: list-sa
Apr 9 01:24:47 charon 15[CFG] vici client 131027 connected
Apr 9 01:24:42 charon 12[CFG] vici client 131026 disconnected
Apr 9 01:24:42 charon 06[CFG] vici client 131026 requests: list-sas
Apr 9 01:24:42 charon 06[CFG] vici client 131026 registered for: list-sa
Apr 9 01:24:42 charon 15[CFG] vici client 131026 connected
Apr 9 01:24:37 charon 09[CFG] vici client 131025 disconnected
Apr 9 01:24:37 charon 06[CFG] vici client 131025 requests: list-sas
Apr 9 01:24:37 charon 06[CFG] vici client 131025 registered for: list-sa
Apr 9 01:24:37 charon 09[CFG] vici client 131025 connected
Apr 9 01:24:32 charon 14[CFG] vici client 131024 disconnected
Apr 9 01:24:32 charon 14[CFG] vici client 131024 requests: list-sas
Apr 9 01:24:32 charon 16[CFG] vici client 131024 registered for: list-sa
Apr 9 01:24:32 charon 06[CFG] vici client 131024 connected
Apr 9 01:24:27 charon 16[CFG] vici client 131023 disconnected