Hallo Andreas,
Deine Zusammenfassung ist korrekt. Hier der Packet Capture bei Ping auf 10.0.1.40 über IPSec (der ja nicht funktioniert):
16:12:48.780203 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1.58922 > 10.0.1.1.80: tcp 0
16:12:48.815155 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1.58922 > 10.0.1.1.80: tcp 0
16:12:48.816853 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1.58922 > 10.0.1.1.80: tcp 0
16:12:48.818596 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1.58922 > 10.0.1.1.80: tcp 0
16:12:51.086836 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1 > 10.0.1.40: ICMP echo request, id 37395, seq 0, length 64
16:12:52.082681 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1 > 10.0.1.40: ICMP echo request, id 37395, seq 1, length 64
16:12:53.087690 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1 > 10.0.1.40: ICMP echo request, id 37395, seq 2, length 64
16:12:54.089015 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1 > 10.0.1.40: ICMP echo request, id 37395, seq 3, length 64
16:12:55.096219 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1 > 10.0.1.40: ICMP echo request, id 37395, seq 4, length 64
16:12:55.289094 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1.15642 > 104.41.229.63.50001: UDP, length 25
16:12:55.290302 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1.15642 > 40.113.11.102.50003: UDP, length 24
16:12:55.325093 (authentic,confidential): SPI 0x0827a1dd: IP 104.41.229.63.50001 > 10.0.130.1.15642: UDP, length 23
16:12:55.326655 (authentic,confidential): SPI 0x0827a1dd: IP 40.113.11.102.50003 > 10.0.130.1.15642: UDP, length 23
16:12:55.779561 (authentic,confidential): SPI 0x0827a1dd: IP 46.18.68.21.35761 > 10.0.130.1.15642: UDP, length 3
16:12:56.092612 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1 > 10.0.1.40: ICMP echo request, id 37395, seq 5, length 64
16:12:56.187183 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1.53155 > 10.0.1.1.53: UDP, length 32
16:12:57.098803 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1 > 10.0.1.40: ICMP echo request, id 37395, seq 6, length 64
16:12:57.566918 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1.15642 > 46.18.68.21.35761: UDP, length 3
16:12:57.586701 (authentic,confidential): SPI 0x0827a1dd: IP 46.18.68.21.35761 > 10.0.130.1.15642: UDP, length 46
16:12:58.100846 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1 > 10.0.1.40: ICMP echo request, id 37395, seq 7, length 64
16:12:59.130456 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1 > 10.0.1.40: ICMP echo request, id 37395, seq 8, length 64
16:13:00.109581 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1 > 10.0.1.40: ICMP echo request, id 37395, seq 9, length 64
16:13:01.113604 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1 > 10.0.1.40: ICMP echo request, id 37395, seq 10, length 64
16:13:04.424257 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1.59298 > 10.0.1.1.53: UDP, length 33
16:13:05.538637 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1.53840 > 10.0.1.1.53: UDP, length 29
16:13:05.540098 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1.60036 > 10.0.1.1.53: UDP, length 32
16:13:05.974769 (authentic,confidential): SPI 0x0827a1dd: IP 46.18.68.21.35761 > 10.0.130.1.15642: UDP, length 3
Ich werde daraus nicht so schlau, muss ich zugeben...
Hier ein Ping über IPSec auf einen anderen Server (10.0.1.10), der Ping funktioniert:
16:14:28.590117 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1.59104 > 10.0.1.1.80: tcp 0
16:14:28.593790 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1.59104 > 10.0.1.1.80: tcp 0
16:14:28.595251 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1.59104 > 10.0.1.1.80: tcp 0
16:14:28.627938 (authentic,confidential): SPI 0x0827a1dd: IP 162.125.34.129.443 > 10.0.130.1.58605: tcp 0
16:14:28.637162 (authentic,confidential): SPI 0x0827a1dd: IP 162.125.34.129.443 > 10.0.130.1.58605: tcp 0
16:14:29.222062 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1.50873 > 10.0.1.1.53: UDP, length 33
16:14:29.223756 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1.64768 > 10.0.1.1.53: UDP, length 29
16:14:29.225485 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1.58315 > 10.0.1.1.53: UDP, length 33
16:14:30.223317 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1.50873 > 10.0.1.1.53: UDP, length 33
16:14:30.227782 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1.64768 > 10.0.1.1.53: UDP, length 29
16:14:30.230449 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1.58315 > 10.0.1.1.53: UDP, length 33
16:14:30.410358 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1 > 10.0.1.10: ICMP echo request, id 40979, seq 0, length 64
16:14:30.410739 (authentic,confidential): SPI 0x0827a1dd: IP 10.0.1.10 > 10.0.130.1: ICMP echo reply, id 40979, seq 0, length 64
16:14:30.496086 (authentic,confidential): SPI 0x0827a1dd: IP 46.18.68.21.35761 > 10.0.130.1.15642: UDP, length 3
16:14:31.415107 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1 > 10.0.1.10: ICMP echo request, id 40979, seq 1, length 64
16:14:31.415449 (authentic,confidential): SPI 0x0827a1dd: IP 10.0.1.10 > 10.0.130.1: ICMP echo reply, id 40979, seq 1, length 64
16:14:32.416957 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1 > 10.0.1.10: ICMP echo request, id 40979, seq 2, length 64
16:14:32.417302 (authentic,confidential): SPI 0x0827a1dd: IP 10.0.1.10 > 10.0.130.1: ICMP echo reply, id 40979, seq 2, length 64
16:14:32.705640 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1.64668 > 10.0.1.1.53: UDP, length 45
16:14:33.306117 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1.50873 > 10.0.1.1.53: UDP, length 33
16:14:33.307781 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1.64768 > 10.0.1.1.53: UDP, length 29
16:14:33.309267 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1.58315 > 10.0.1.1.53: UDP, length 33
16:14:33.420401 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1 > 10.0.1.10: ICMP echo request, id 40979, seq 3, length 64
16:14:33.420754 (authentic,confidential): SPI 0x0827a1dd: IP 10.0.1.10 > 10.0.130.1: ICMP echo reply, id 40979, seq 3, length 64
16:14:34.426391 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1 > 10.0.1.10: ICMP echo request, id 40979, seq 4, length 64
16:14:34.426787 (authentic,confidential): SPI 0x0827a1dd: IP 10.0.1.10 > 10.0.130.1: ICMP echo reply, id 40979, seq 4, length 64
16:14:35.459003 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1 > 10.0.1.10: ICMP echo request, id 40979, seq 5, length 64
16:14:35.459268 (authentic,confidential): SPI 0x0827a1dd: IP 10.0.1.10 > 10.0.130.1: ICMP echo reply, id 40979, seq 5, length 64
16:14:36.433191 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1 > 10.0.1.10: ICMP echo request, id 40979, seq 6, length 64
16:14:36.433544 (authentic,confidential): SPI 0x0827a1dd: IP 10.0.1.10 > 10.0.130.1: ICMP echo reply, id 40979, seq 6, length 64
16:14:37.438963 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1 > 10.0.1.10: ICMP echo request, id 40979, seq 7, length 64
16:14:37.439336 (authentic,confidential): SPI 0x0827a1dd: IP 10.0.1.10 > 10.0.130.1: ICMP echo reply, id 40979, seq 7, length 64
16:14:38.461165 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1 > 10.0.1.10: ICMP echo request, id 40979, seq 8, length 64
16:14:38.461466 (authentic,confidential): SPI 0x0827a1dd: IP 10.0.1.10 > 10.0.130.1: ICMP echo reply, id 40979, seq 8, length 64
16:14:39.439573 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1 > 10.0.1.10: ICMP echo request, id 40979, seq 9, length 64
16:14:39.439903 (authentic,confidential): SPI 0x0827a1dd: IP 10.0.1.10 > 10.0.130.1: ICMP echo reply, id 40979, seq 9, length 64
16:14:40.446767 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1 > 10.0.1.10: ICMP echo request, id 40979, seq 10, length 64
16:14:40.447137 (authentic,confidential): SPI 0x0827a1dd: IP 10.0.1.10 > 10.0.130.1: ICMP echo reply, id 40979, seq 10, length 64
16:14:40.685252 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1.15642 > 46.18.68.21.35761: UDP, length 3
16:14:40.687222 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1.15642 > 46.18.68.21.35761: UDP, length 44
16:14:42.309215 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1.50873 > 10.0.1.1.53: UDP, length 33
16:14:42.311123 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1.64768 > 10.0.1.1.53: UDP, length 29
16:14:42.312367 (authentic,confidential): SPI 0xc9dfc098: IP 10.0.130.1.58315 > 10.0.1.1.53: UDP, length 33
Vielen Dank für Deine Hilfe!
Gruss,
Christian