NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.

Forum Discussion

golfbird's avatar
Aug 08, 2015
Solved

DOI erros

Starting off by excusing my ignorance of this process

I have a FVS318v3 router at my office and have been using a prosafe client software from my home 

for several years on a windows xp

 

Now I am trying to change to windows 10 and to include other users to be able to access my office computers.

I have downloaded trial version of vpng05l software but can not establish a connection.

 

I have copied existing parameter from the xp software but must be missing something

Tried to contact support but I guess I must be annoying them by asking questions I suppose they expect

to already know the answers too.

 

I am getting an error message  "exchange_validate failed, DOI error" .

I get it.. something is not the same on the exchange, but I can not find any reference on Google or any other source

as to what a DOI error is and therefore have no idea how to correct it.

 


20150808 11:13:21:623 Default (SA Ikev1Gateway-P1) SEND phase 1 Aggressive Mode [SA] [KEY_EXCH] [NONCE] [ID] [VID] [VID] [VID] [VID] [VID]
20150808 11:13:24:680 Default (SA Ikev1Gateway-P1) RECV phase 1 Aggressive Mode [HASH] [SA] [KEY_EXCH] [NONCE] [ID] [NAT_D] [NAT_D] [NAT_D] [VID]
20150808 11:13:24:696 Default (SA Ikev1Gateway-P1) SEND phase 1 Aggressive Mode [HASH] [NAT_D] [NAT_D]
20150808 11:13:24:696 Default phase 1 done: initiator id fvs_remote_Peter, responder id 65.41.59.155
20150808 11:13:24:727 Default (SA Ikev1Gateway-Ikev1Tunnel-P2) SEND phase 2 Quick Mode [HASH] [SA] [NONCE] [ID] [ID]
20150808 11:13:29:688 Default (SA Ikev1Gateway-P1) SEND phase 1 Aggressive Mode [HASH] [NAT_D] [NAT_D]
20150808 11:13:29:688 Default (SA Ikev1Gateway-Ikev1Tunnel-P2) SEND phase 2 Quick Mode [HASH] [SA] [NONCE] [ID] [ID]
20150808 11:13:34:696 Default (SA Ikev1Gateway-P1) SEND phase 1 Aggressive Mode [HASH] [NAT_D] [NAT_D]
20150808 11:13:34:696 Default (SA Ikev1Gateway-Ikev1Tunnel-P2) SEND phase 2 Quick Mode [HASH] [SA] [NONCE] [ID] [ID]
20150808 11:13:39:703 Default (SA Ikev1Gateway-P1) SEND phase 1 Aggressive Mode [HASH] [NAT_D] [NAT_D]
20150808 11:13:39:703 Default (SA Ikev1Gateway-Ikev1Tunnel-P2) SEND phase 2 Quick Mode [HASH] [SA] [NONCE] [ID] [ID]
20150808 11:13:44:726 Default (SA Ikev1Gateway-P1) RECV Informational [DELETE]
20150808 11:13:44:726 Default exchange_run: exchange_validate failed, DOI error
20150808 11:13:44:742 Default (SA Ikev1Gateway-Ikev1Tunnel-P2) SEND phase 2 Quick Mode [HASH] [SA] [NONCE] [ID] [ID]
20150808 11:14:40:731 Default (SA Ikev1Gateway-Ikev1Tunnel-P2) SEND phase 2 Quick Mode [HASH] [SA] [NONCE] [ID] [ID]
20150808 11:14:40:731 Default transport_send_messages: giving up on message 0116E520

 

Sure would appreciate knowing what the problem means, how to address it so I can buy a license. Thank You

  • JohnRo's avatar
    JohnRo
    Aug 14, 2015

    Hi golfbird, 

     

     

    I am glad that it worked! We'll be reporting the latest version of the firmware and do more tests on win7 and win10. 

     

    Thank you for your contribution. 

     

     

    Regards, 

18 Replies

    • golfbird's avatar
      golfbird
      Tutor

      Thank You

      I have read those before, and unfortunately I dont understand all I read

      I also have replied to your offer to help, but do not see how I can attach images

      so if you would provide me with your email, I can get those screen shots to you.

       

      Just knowing you making an attempt to help this old man out, has made my day.

       

      • Sophostry's avatar
        Sophostry
        Aspirant

        There are some differences between the old FVS318v3 and the newer client.

         

        I would use the wizard on the client after using it on the device.  The number values would need to be changed.  Looking at both articles and comparing them to your device and client on the PC, should get the correct ones in place, though your exchanging them, and so it will be a little odd.

  • I changed to 192.168.1.0 on the router

    And 192.168.1.0 client ipsec page

    Subnet on both is 255.255.255.0

     

    That did not connect

     

    I then changed both to 200 200 200 0

    And that also did not connect

     

    Log message

    Exchange_validate failed: DOI error

     

     

     

     

    I have noticed that you are using 200.200.200.0 as your LAN  IP as declared on the VPN auto policy (please take note that this should be you local IP which your devices are using). 

     

    However, the one you have declared on the client software is 192.168.1.0. The local IP on the VPN policy and the client software should match. 

    • JohnRo's avatar
      JohnRo
      NETGEAR Employee Retired

      Hello golfbird, 

       

      I have sent additional questions via PM. Also, if you could provide us your firmware version that would help a lot. 

       

      I'll look forward to your response.

       

       

      Thanks, 

    • golfbird's avatar
      golfbird
      Tutor

      Got issue resolved

      Rennee discovered that using the most recent vpn client software would not open a tunnel to fvs318v3 but previous version would.  Testing proved it over and over.  As as result I have purchaced new router fvs318G and will be buying the

      newest vpng05l.  Apprecaite all the effort. 

NETGEAR Academy

Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology! 

Join Us!

ProSupport for Business

Comprehensive support plans for maximum network uptime and business peace of mind.

 

Learn More