Facility LOG_AUTH
KMD_PM_PHASE2_IDENTITY_MISMATCH
System Log Message Phase 2 identities did not match: local initiator local-initiator, responder local-responder;
remote initiator remote-initiator, responder remote-responder
Description The indicated initiator and responder identities defined by the local peer did not match
the indicated identities defined by the remote peer. The key management process (kmd)
canceled Internet Key Exchange (IKE) Phase 2 negotiation.
Type Error: An error occurred
Severity error
Facility LOG_AUTH
KMD_PM_PHASE2_NOTIF_UNKNOWN
System Log Message Unknown Phase 2 notification notification-name (type notification-type, size length bytes)
from remote-address:remote-port for protocol protocol-id (SPI(size)=data)
Description The indicated Internet Key Exchange (IKE) Phase 2 notification message from the
indicated remote peer (address and port) is a type that the key management process
(kmd) does not support. As a result, the kmd process discarded the message and Phase
2 negotiation failed.
Type Error: An error occurred
Severity error
Facility LOG_AUTH
KMD_PM_PHASE2_POLICY_LOOKUP_FAIL
System Log Message Unable to retrieve policy for Phase 2 from negotiation-role (Phase 1 local peer local-peer,
remote peer remote-peer; Phase 2 local peer local-prefix, remote peer remote-prefix)
Description The key management process (kmd) could not retrieve a policy from the indicated
participant to use during Internet Key Exchange (IKE) Phase 2 negotiation for the indicated
local and remote peers. The traffic selectors proposed by the remote peer (represented
by the indicated Phase 2 IP prefixes) do not match any local peer policies.
Type Error: An error occurred
Severity error
Facility LOG_AUTH
KMD_PM_PHASE2_SELECTOR_UNDEFINED
System Log Message Unable to start Phase 2: No traffic-selector addresses defined for SA sa-name
Description The configuration for the indicated security association (SA) did not include the
information about local and remote traffic selectors required for Internet Key Exchange
(IKE) Phase 2, so that phase did not begin.
339Copyright © 2010, Juniper Networks, Inc.
Chapter 43: KMD System Log Messages