NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
Forum Discussion
golfbird
Aug 08, 2015Tutor
DOI erros
Starting off by excusing my ignorance of this process
I have a FVS318v3 router at my office and have been using a prosafe client software from my home
for several years on a windows xp
Now I am trying to change to windows 10 and to include other users to be able to access my office computers.
I have downloaded trial version of vpng05l software but can not establish a connection.
I have copied existing parameter from the xp software but must be missing something
Tried to contact support but I guess I must be annoying them by asking questions I suppose they expect
to already know the answers too.
I am getting an error message "exchange_validate failed, DOI error" .
I get it.. something is not the same on the exchange, but I can not find any reference on Google or any other source
as to what a DOI error is and therefore have no idea how to correct it.
20150808 11:13:21:623 Default (SA Ikev1Gateway-P1) SEND phase 1 Aggressive Mode [SA] [KEY_EXCH] [NONCE] [ID] [VID] [VID] [VID] [VID] [VID]
20150808 11:13:24:680 Default (SA Ikev1Gateway-P1) RECV phase 1 Aggressive Mode [HASH] [SA] [KEY_EXCH] [NONCE] [ID] [NAT_D] [NAT_D] [NAT_D] [VID]
20150808 11:13:24:696 Default (SA Ikev1Gateway-P1) SEND phase 1 Aggressive Mode [HASH] [NAT_D] [NAT_D]
20150808 11:13:24:696 Default phase 1 done: initiator id fvs_remote_Peter, responder id 65.41.59.155
20150808 11:13:24:727 Default (SA Ikev1Gateway-Ikev1Tunnel-P2) SEND phase 2 Quick Mode [HASH] [SA] [NONCE] [ID] [ID]
20150808 11:13:29:688 Default (SA Ikev1Gateway-P1) SEND phase 1 Aggressive Mode [HASH] [NAT_D] [NAT_D]
20150808 11:13:29:688 Default (SA Ikev1Gateway-Ikev1Tunnel-P2) SEND phase 2 Quick Mode [HASH] [SA] [NONCE] [ID] [ID]
20150808 11:13:34:696 Default (SA Ikev1Gateway-P1) SEND phase 1 Aggressive Mode [HASH] [NAT_D] [NAT_D]
20150808 11:13:34:696 Default (SA Ikev1Gateway-Ikev1Tunnel-P2) SEND phase 2 Quick Mode [HASH] [SA] [NONCE] [ID] [ID]
20150808 11:13:39:703 Default (SA Ikev1Gateway-P1) SEND phase 1 Aggressive Mode [HASH] [NAT_D] [NAT_D]
20150808 11:13:39:703 Default (SA Ikev1Gateway-Ikev1Tunnel-P2) SEND phase 2 Quick Mode [HASH] [SA] [NONCE] [ID] [ID]
20150808 11:13:44:726 Default (SA Ikev1Gateway-P1) RECV Informational [DELETE]
20150808 11:13:44:726 Default exchange_run: exchange_validate failed, DOI error
20150808 11:13:44:742 Default (SA Ikev1Gateway-Ikev1Tunnel-P2) SEND phase 2 Quick Mode [HASH] [SA] [NONCE] [ID] [ID]
20150808 11:14:40:731 Default (SA Ikev1Gateway-Ikev1Tunnel-P2) SEND phase 2 Quick Mode [HASH] [SA] [NONCE] [ID] [ID]
20150808 11:14:40:731 Default transport_send_messages: giving up on message 0116E520
Sure would appreciate knowing what the problem means, how to address it so I can buy a license. Thank You
Hi golfbird,
I am glad that it worked! We'll be reporting the latest version of the firmware and do more tests on win7 and win10.
Thank you for your contribution.
Regards,
18 Replies
- BrianL2NETGEAR Employee Retired
Hi golfbird,
I have sent you a pm to ask for more info and to speed up the resolution. You may also want to check the articles below for more information.
http://kb.netgear.com/app/answers/detail/a_id/24245/~/client-to-box-vpn
Kind regards,
BrianL
NETGEAR Community- golfbirdTutor
Thank You
I have read those before, and unfortunately I dont understand all I read
I also have replied to your offer to help, but do not see how I can attach images
so if you would provide me with your email, I can get those screen shots to you.
Just knowing you making an attempt to help this old man out, has made my day.
- SophostryAspirant
There are some differences between the old FVS318v3 and the newer client.
I would use the wizard on the client after using it on the device. The number values would need to be changed. Looking at both articles and comparing them to your device and client on the PC, should get the correct ones in place, though your exchanging them, and so it will be a little odd.
- golfbirdTutor
I changed to 192.168.1.0 on the router
And 192.168.1.0 client ipsec page
Subnet on both is 255.255.255.0
That did not connect
I then changed both to 200 200 200 0
And that also did not connect
Log message
Exchange_validate failed: DOI error
I have noticed that you are using 200.200.200.0 as your LAN IP as declared on the VPN auto policy (please take note that this should be you local IP which your devices are using).
However, the one you have declared on the client software is 192.168.1.0. The local IP on the VPN policy and the client software should match.
- JohnRoNETGEAR Employee Retired
Hello golfbird,
I have sent additional questions via PM. Also, if you could provide us your firmware version that would help a lot.
I'll look forward to your response.
Thanks,
- golfbirdTutor
a pdf file with screen shots, hope these are pages,
all from the router
318v4 firmware .028
- golfbirdTutor
Got issue resolved
Rennee discovered that using the most recent vpn client software would not open a tunnel to fvs318v3 but previous version would. Testing proved it over and over. As as result I have purchaced new router fvs318G and will be buying the
newest vpng05l. Apprecaite all the effort.
Related Content
NETGEAR Academy
Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology!
Join Us!