IPSec/IKEV2 error "no shared key found for " all ids
-
@jimp @Derelict @NETGATE-JAMES
Hello guys, please help!
I have updated pfSense instance to 2.5. dev release and it affected me previously worked configuration for IPSec/ IKEv2 with PSK key. All attempts to connect was failed.
My log:
Apr 26 08:44:08 charon 37755 14[IKE] <con-mobile|2> no shared key found for '161.35.142.86' - 'macbook'
Apr 26 08:44:08 charon 37755 14[IKE] <con-mobile|2> processing INTERNAL_IP4_ADDRESS attribute
Apr 26 08:44:08 charon 37755 14[IKE] <con-mobile|2> processing INTERNAL_IP4_NETMASK attribute
Apr 26 08:44:08 charon 37755 14[IKE] <con-mobile|2> processing INTERNAL_IP4_DHCP attribute
Apr 26 08:44:08 charon 37755 14[IKE] <con-mobile|2> processing INTERNAL_IP4_DNS attribute
Apr 26 08:44:08 charon 37755 14[IKE] <con-mobile|2> processing INTERNAL_IP6_ADDRESS attribute
Apr 26 08:44:08 charon 37755 14[IKE] <con-mobile|2> processing INTERNAL_IP6_DHCP attribute
Apr 26 08:44:08 charon 37755 14[IKE] <con-mobile|2> processing INTERNAL_IP6_DNS attribute
Apr 26 08:44:08 charon 37755 14[IKE] <con-mobile|2> processing INTERNAL_DNS_DOMAIN attribute
Apr 26 08:44:08 charon 37755 14[IKE] <con-mobile|2> received ESP_TFC_PADDING_NOT_SUPPORTED, not using ESPv3 TFC padding
Apr 26 08:44:08 charon 37755 14[IKE] <con-mobile|2> peer supports MOBIKE
Apr 26 08:44:08 charon 37755 14[ENC] <con-mobile|2> generating IKE_AUTH response 1 [ N(AUTH_FAILED) ]
Apr 26 08:44:08 charon 37755 14[NET] <con-mobile|2> sending packet: from 161.35.142.86[4500] to 46.133.78.231[41912] (68 bytes)
Apr 26 08:44:08 charon 37755 14[IKE] <con-mobile|2> IKE_SA con-mobile[2] state change: CONNECTING => DESTROYING -
You already have a thread open for this: https://forum.netgate.com/topic/152906/ipsec-ikev2-not-connecting-with-psk-on-pfsense-2-5-dev-release-auth_failed-connecting-destroying/6