Community discussions

 
psyfer
just joined
Topic Author
Posts: 1
Joined: Mon May 11, 2009 2:43 pm

IPSec - invalid length of payload

Mon May 11, 2009 2:58 pm

Hi,

I have had an IPSec tunnel between a mikrotik and Cisco setup for about 6 months.
Yesterday I upgraded to v3.23, and then after the upgrade, no IPSec tunnel couldn’t be established again.

This is the error log:

12:57:40 respond new phase 1 negotiation: 196.223.113.21[500]<=>193.142.87.124[500]
12:57:40 begin Identity Protection mode.
12:57:41 invalid length of payload
12:57:42 invalid length of payload
12:57:42 invalid length of payload


I then downgraded to v3.13 - but the problem still exists.
Has anyone had the same problem or know how to resolve it?
 
Muqatil
Trainer
Trainer
Posts: 574
Joined: Mon Mar 03, 2008 1:03 pm
Location: London - UK
Contact:

Re: IPSec - invalid length of payload

Wed May 13, 2009 4:14 pm

I've got the same issue against a JunOS router.. :?
Renato Bernardi

skype: medtech5
 
ispan
just joined
Posts: 3
Joined: Thu Feb 24, 2005 10:53 am

Re: IPSec - invalid length of payload

Wed May 20, 2009 1:32 am

Looks like IPSec is broken in some 3.x release. What 3.x version works stable?

Eric
 
User avatar
sergejs
MikroTik Support
MikroTik Support
Posts: 6616
Joined: Thu Mar 31, 2005 3:33 pm
Location: Riga, Latvia
Contact:

Re: IPSec - invalid length of payload

Wed May 20, 2009 12:27 pm

Contact support (support@mikrotik.com) with the attached support output file from the 3.23 router.
 
User avatar
NAB
Trainer
Trainer
Posts: 503
Joined: Tue Feb 10, 2009 4:08 pm
Location: UK
Contact:

Re: IPSec - invalid length of payload

Thu Nov 04, 2010 6:56 pm

I'm seeing this with ROS 5.0rc3 connecting to a Fortinet Fortigate.

Should I downgrade to the latest 4.x?
Nicholas Barnes BSc(hons)
Certified Mikrotik Consultant
Certified Mikrotik Trainer

Vitell - Asterisk, Linux and network consultants
Unofficial IRC channel: #routerboard on irc.z.je

Who is online

Users browsing this forum: No registered users and 108 guests