L2TP w/ IPSEC failing

Hello.

Post your terminal/konsole in- and output as text (no pictures) from:

System:
Kernel: 5.16.0-zen1-1-zen x86_64 bits: 64 compiler: gcc v: 11.1.0
parameters: BOOT_IMAGE=/@/boot/vmlinuz-linux-zen
root=UUID=ba2fb729-b4b9-49f0-8223-47f0378d19c9 rw [email protected]
quiet splash rd.udev.log_priority=3 vt.global_cursor_default=0
systemd.unified_cgroup_hierarchy=1 loglevel=3
Desktop: KDE Plasma 5.23.5 tk: Qt 5.15.2 info: latte-dock wm: kwin_x11
vt: 1 dm: SDDM Distro: Garuda Linux base: Arch Linux
Machine:
Type: Laptop System: ASUSTeK product: ROG Strix G513QM_G513QM v: 1.0
serial: <superuser required>
Mobo: ASUSTeK model: G513QM v: 1.0 serial: <superuser required>
UEFI: American Megatrends LLC. v: G513QM.314 date: 09/03/2021
Battery:
ID-1: BAT0 charge: 15.4 Wh (19.0%) condition: 81.2/90.0 Wh (90.2%)
volts: 14.2 min: 15.9 model: AS3GWAF3KC GA50358 type: Li-ion
serial: <filter> status: Discharging
CPU:
Info: model: AMD Ryzen 9 5900HX with Radeon Graphics bits: 64 type: MT MCP
arch: Zen 3 family: 0x19 (25) model-id: 0x50 (80) stepping: 0
microcode: 0xA50000B
Topology: cpus: 1x cores: 8 tpc: 2 threads: 16 smt: enabled cache:
L1: 512 KiB desc: d-8x32 KiB; i-8x32 KiB L2: 4 MiB desc: 8x512 KiB
L3: 16 MiB desc: 1x16 MiB
Speed (MHz): avg: 2706 high: 4540 min/max: 1200/4889 boost: enabled
scaling: driver: acpi-cpufreq governor: performance cores: 1: 2633 2: 4540
3: 1548 4: 2290 5: 2546 6: 2581 7: 2340 8: 3443 9: 1979 10: 2246 11: 2124
12: 2124 13: 3615 14: 3630 15: 2055 16: 3617 bogomips: 105400
Flags: avx avx2 ht lm nx pae sse sse2 sse3 sse4_1 sse4_2 sse4a ssse3 svm
Vulnerabilities:
Type: itlb_multihit status: Not affected
Type: l1tf status: Not affected
Type: mds status: Not affected
Type: meltdown status: Not affected
Type: spec_store_bypass
mitigation: Speculative Store Bypass disabled via prctl
Type: spectre_v1
mitigation: usercopy/swapgs barriers and __user pointer sanitization
Type: spectre_v2 mitigation: Full AMD retpoline, IBPB: conditional,
IBRS_FW, STIBP: always-on, RSB filling
Type: srbds status: Not affected
Type: tsx_async_abort status: Not affected
Graphics:
Device-1: NVIDIA GA106M [GeForce RTX 3060 Mobile / Max-Q] vendor: ASUSTeK
driver: nvidia v: 495.46 alternate: nouveau,nvidia_drm bus-ID: 01:00.0
chip-ID: 10de:2520 class-ID: 0300
Device-2: AMD Cezanne vendor: ASUSTeK driver: amdgpu v: kernel
bus-ID: 06:00.0 chip-ID: 1002:1638 class-ID: 0300
Display: x11 server: X.Org 1.21.1.3 compositor: kwin_x11 driver:
loaded: modesetting,nvidia display-ID: :0 screens: 1
Screen-1: 0 s-res: 1920x1080 s-dpi: 96 s-size: 508x285mm (20.0x11.2")
s-diag: 582mm (22.9")
Monitor-1: eDP-1 res: 1920x1080 hz: 144 dpi: 142
size: 344x193mm (13.5x7.6") diag: 394mm (15.5")
OpenGL: renderer: AMD RENOIR (DRM 3.44.0 5.16.0-zen1-1-zen LLVM 13.0.0)
v: 4.6 Mesa 21.3.4 direct render: Yes
Audio:
Device-1: NVIDIA vendor: ASUSTeK driver: snd_hda_intel v: kernel
bus-ID: 01:00.1 chip-ID: 10de:228e class-ID: 0403
Device-2: AMD Renoir Radeon High Definition Audio vendor: ASUSTeK
driver: snd_hda_intel v: kernel bus-ID: 06:00.1 chip-ID: 1002:1637
class-ID: 0403
Device-3: AMD Raven/Raven2/FireFlight/Renoir Audio Processor
vendor: ASUSTeK driver: N/A
alternate: snd_pci_acp3x, snd_rn_pci_acp3x, snd_pci_acp5x, snd_pci_acp6x
bus-ID: 06:00.5 chip-ID: 1022:15e2 class-ID: 0480
Device-4: AMD Family 17h HD Audio vendor: ASUSTeK driver: snd_hda_intel
v: kernel bus-ID: 06:00.6 chip-ID: 1022:15e3 class-ID: 0403
Sound Server-1: ALSA v: k5.16.0-zen1-1-zen running: yes
Sound Server-2: JACK v: 1.9.20 running: no
Sound Server-3: PulseAudio v: 15.0 running: no
Sound Server-4: PipeWire v: 0.3.43 running: yes
Network:
Device-1: Realtek RTL8111/8168/8411 PCI Express Gigabit Ethernet
vendor: ASUSTeK driver: r8169 v: kernel port: e000 bus-ID: 02:00.0
chip-ID: 10ec:8168 class-ID: 0200
IF: enp2s0 state: down mac: <filter>
Device-2: MEDIATEK vendor: AzureWave driver: mt7921e v: kernel port: N/A
bus-ID: 03:00.0 chip-ID: 14c3:7961 class-ID: 0280
IF: wlp3s0 state: up mac: <filter>
IF-ID-1: vboxnet0 state: down mac: <filter>
Bluetooth:
Device-1: IMC Networks Wireless_Device type: USB driver: btusb v: 0.8
bus-ID: 3-4:2 chip-ID: 13d3:3563 class-ID: e001 serial: <filter>
Report: bt-adapter ID: hci0 rfk-id: 0 state: up address: <filter>
Drives:
Local Storage: total: 1.4 TiB used: 185.7 GiB (13.0%)
SMART Message: Unable to run smartctl. Root privileges required.
ID-1: /dev/nvme0n1 maj-min: 259:2 vendor: SK Hynix model: HFM001TD3JX013N
size: 953.87 GiB block-size: physical: 512 B logical: 512 B
speed: 31.6 Gb/s lanes: 4 type: SSD serial: <filter> rev: 41000C20
temp: 38.9 C scheme: GPT
ID-2: /dev/nvme1n1 maj-min: 259:0 vendor: Intel model: SSDPEKKW512G8
size: 476.94 GiB block-size: physical: 512 B logical: 512 B
speed: 31.6 Gb/s lanes: 4 type: SSD serial: <filter> rev: 004C
temp: 46.9 C scheme: GPT
Partition:
ID-1: / raw-size: 476.94 GiB size: 476.94 GiB (100.00%)
used: 185.67 GiB (38.9%) fs: btrfs dev: /dev/nvme1n1p1 maj-min: 259:1
ID-2: /boot/efi raw-size: 100 MiB size: 96 MiB (96.00%)
used: 25.5 MiB (26.6%) fs: vfat dev: /dev/nvme0n1p1 maj-min: 259:3
ID-3: /home raw-size: 476.94 GiB size: 476.94 GiB (100.00%)
used: 185.67 GiB (38.9%) fs: btrfs dev: /dev/nvme1n1p1 maj-min: 259:1
ID-4: /var/log raw-size: 476.94 GiB size: 476.94 GiB (100.00%)
used: 185.67 GiB (38.9%) fs: btrfs dev: /dev/nvme1n1p1 maj-min: 259:1
ID-5: /var/tmp raw-size: 476.94 GiB size: 476.94 GiB (100.00%)
used: 185.67 GiB (38.9%) fs: btrfs dev: /dev/nvme1n1p1 maj-min: 259:1
Swap:
Kernel: swappiness: 133 (default 60) cache-pressure: 100 (default)
ID-1: swap-1 type: zram size: 15.12 GiB used: 33.5 MiB (0.2%)
priority: 100 dev: /dev/zram0
Sensors:
System Temperatures: cpu: 66.0 C mobo: N/A gpu: amdgpu temp: 62.0 C
Fan Speeds (RPM): cpu: 0
Info:
Processes: 413 Uptime: 37m wakeups: 5 Memory: 15.12 GiB
used: 9.38 GiB (62.0%) Init: systemd v: 250 tool: systemctl Compilers:
gcc: 11.1.0 clang: 13.0.0 Packages: pacman: 1862 lib: 551 Shell: fish
v: 3.3.1 default: Bash v: 5.1.16 running-in: konsole inxi: 3.3.11

Report everything you have already attempted to solve your problem.

I've installed networkmanager-lt2tp, and I keep getting and error when attempting to connect. this is journalctl -r output

journalctl -r
Jan 15 20:23:44 umbra-rogstrixg513qm kwin_x11[7807]: qt.qpa.xcb: QXcbConnection: XCB error: 9 (BadDrawable), sequence: 48925, resource id: 46137551, major code: 14 (GetGeometry), min>
Jan 15 20:23:44 umbra-rogstrixg513qm kwin_x11[7807]: qt.qpa.xcb: QXcbConnection: XCB error: 9 (BadDrawable), sequence: 48924, resource id: 46137549, major code: 14 (GetGeometry), min>
Jan 15 20:23:44 umbra-rogstrixg513qm kwin_x11[7807]: qt.qpa.xcb: QXcbConnection: XCB error: 9 (BadDrawable), sequence: 48923, resource id: 46137547, major code: 14 (GetGeometry), min>
Jan 15 20:23:44 umbra-rogstrixg513qm NetworkManager[688]: <warn>  [1642296224.6590] vpn-connection[0x560eb61e2140,b2fe13cc-73c8-444a-b9d6-0d09c9b902a5,"Work",0]: VPN connection: fail>
Jan 15 20:23:44 umbra-rogstrixg513qm NetworkManager[688]: <info>  [1642296224.6589] vpn-connection[0x560eb61e2140,b2fe13cc-73c8-444a-b9d6-0d09c9b902a5,"Work",0]: VPN service disappea>
Jan 15 20:23:44 umbra-rogstrixg513qm NetworkManager[688]: <info>  [1642296224.6577] vpn-connection[0x560eb61e2140,b2fe13cc-73c8-444a-b9d6-0d09c9b902a5,"Work",0]: VPN plugin: state ch>
Jan 15 20:23:44 umbra-rogstrixg513qm nm-l2tp-service[27099]: g_dbus_method_invocation_take_error: assertion 'error != NULL' failed
Jan 15 20:23:44 umbra-rogstrixg513qm ananicy-cpp[683]: [2022-01-15 20:23:44.656] [info] rm(27244)
Jan 15 20:23:44 umbra-rogstrixg513qm ipsec_starter[27164]: ipsec starter stopped
Jan 15 20:23:44 umbra-rogstrixg513qm ipsec_starter[27164]: charon stopped after 200 ms
Jan 15 20:23:44 umbra-rogstrixg513qm ipsec_starter[27164]: 
Jan 15 20:23:44 umbra-rogstrixg513qm ipsec_starter[27164]: child 27166 (charon) has quit (exit code 0)
Jan 15 20:23:44 umbra-rogstrixg513qm charon[27166]: 00[IKE] uninstalling bypass policy for fe80::/64
Jan 15 20:23:44 umbra-rogstrixg513qm charon[27166]: 00[IKE] uninstalling bypass policy for ::1/128
Jan 15 20:23:44 umbra-rogstrixg513qm charon[27166]: 00[IKE] uninstalling bypass policy for 192.168.1.0/24
Jan 15 20:23:44 umbra-rogstrixg513qm NetworkManager[27194]: establishing connection 'b2fe13cc-73c8-444a-b9d6-0d09c9b902a5' failed
Jan 15 20:23:44 umbra-rogstrixg513qm NetworkManager[27194]: destroying IKE_SA in state CONNECTING without notification
Jan 15 20:23:44 umbra-rogstrixg513qm NetworkManager[27194]: sending packet: from 192.168.1.121[4500] to 19WORKIP[4500] (76 bytes)
Jan 15 20:23:44 umbra-rogstrixg513qm NetworkManager[27194]: sending retransmit 1 of request message ID 0, seq 3
Jan 15 20:23:44 umbra-rogstrixg513qm NetworkManager[27194]: sending packet: from 192.168.1.121[4500] to WORKIP[4500] (76 bytes)
Jan 15 20:23:44 umbra-rogstrixg513qm NetworkManager[27194]: generating ID_PROT request 0 [ ID HASH ]
Jan 15 20:23:44 umbra-rogstrixg513qm NetworkManager[27194]: local host is behind NAT, sending keep alives
Jan 15 20:23:44 umbra-rogstrixg513qm NetworkManager[27194]: parsed ID_PROT response 0 [ KE No NAT-D NAT-D ]
Jan 15 20:23:44 umbra-rogstrixg513qm NetworkManager[27194]: received packet: from WORKIP[500] to 192.168.1.121[500] (364 bytes)
Jan 15 20:23:44 umbra-rogstrixg513qm NetworkManager[27194]: sending packet: from 192.168.1.121[500] to WORKIP[500] (372 bytes)
Jan 15 20:23:44 umbra-rogstrixg513qm NetworkManager[27194]: generating ID_PROT request 0 [ KE No NAT-D NAT-D ]
Jan 15 20:23:44 umbra-rogstrixg513qm NetworkManager[27194]: selected proposal: IKE:AES_CBC_256/HMAC_SHA1_96/PRF_HMAC_SHA1/MODP_2048
Jan 15 20:23:44 umbra-rogstrixg513qm NetworkManager[27194]: received FRAGMENTATION vendor ID
Jan 15 20:23:44 umbra-rogstrixg513qm NetworkManager[27194]: received DPD vendor ID
Jan 15 20:23:44 umbra-rogstrixg513qm NetworkManager[27194]: received XAuth vendor ID
Jan 15 20:23:44 umbra-rogstrixg513qm NetworkManager[27194]: received NAT-T (RFC 3947) vendor ID
Jan 15 20:23:44 umbra-rogstrixg513qm NetworkManager[27194]: parsed ID_PROT response 0 [ SA V V V V ]
Jan 15 20:23:44 umbra-rogstrixg513qm NetworkManager[27194]: received packet: from WORKIP[[500] to 192.168.1.121[500] (160 bytes)
Jan 15 20:23:44 umbra-rogstrixg513qm NetworkManager[27194]: sending packet: from 192.168.1.121[500] to WORKIP[500] (532 bytes)
Jan 15 20:23:44 umbra-rogstrixg513qm NetworkManager[27194]: generating ID_PROT request 0 [ SA V V V V V ]
Jan 15 20:23:44 umbra-rogstrixg513qm NetworkManager[27194]: initiating Main Mode IKE_SA b2fe13cc-73c8-444a-b9d6-0d09c9b902a5[1] to WORKIP

i've confirmed all credentials are correct, they are same I've used on my Windows VM for work.

Could it be the same bug as here upstream?

1 Like

Reading through it looks like this is for non PSK l2tp VPN, mine has a PSK.