Netgear FVS318Gv2 – ProSAFE VPN Firewall Series User Manual

Page of 129
Troubleshoot the VPN Client 
113
 NETGEAR ProSAFE VPN Client
VPN Console Log Errors
The following errors might occur on the VPN Client:. The dates, times, and numbers that can 
precede the messages were removed from these examples.
PAYLOAD_MALFORMED error
This message indicates a problem with the phase 1 security association (SA).
VPN console log:
Default sysdep_app_open: Init Connection for : Cnx-Cnx-P2 Cnx-remote-addr
Default sysdep_app_open: IPV4_SUBNET Network 192.168.1.1
Default sysdep_app_open: IPV4_SUBNET Netmask 255.255.255.0
Default (SA Cnx-P1) SEND phase 1 Main Mode [SA][VID]
Default (SA Cnx-P1) RECV phase 1 Main Mode [NOTIFY]
Default exchange_run: exchange_validate failed
Default dropped message from 195.100.205.114 port 500 due to notification type 
PAYLOAD_MALFORMED
Default SEND Informational [NOTIFY] with PAYLOAD_MALFORMED error
Explanation. The phase 1 security association (SA) configuration might be incorrect.
Resolution. Ensure that the encryption algorithms are the same on each side of the VPN 
tunnel.
INVALID_COOKIE error
VPN console log:
Default message_recv: invalid cookie(s) 5918ca0c2634288f 7364e3e486e49105
Default dropped message from 195.100.205.114 port 500 due to notification type 
INVALID_COOKIE
Default SEND Informational [NOTIFY] with INVALID_COOKIE error
Explanation. One of the endpoints attempts to use a security association (SA) that is no 
longer alive. 
Resolution. Reset the VPN connection on each side of the VPN tunnel.
no keystate
VPN console log:
Default sysdep_app_open: Init Connection for : Cnx-Cnx-P2 Cnx-remote-addr
Default sysdep_app_open: IPV4_SUBNET Network 192.168.1.1
Default sysdep_app_open: IPV4_SUBNET Netmask 255.255.255.0
Default (SA Cnx-P1) SEND phase 1 Main Mode [SA][VID]
Default (SA Cnx-P1) RECV phase 1 Main Mode [SA][VID]
Default (SA Cnx-P1) SEND phase 1 Main Mode [KEY][NONCE]