[Openswan Users] Klips patch

sasa sasa at shoponweb.it
Fri Oct 14 12:31:12 CEST 2005


Hi,  the thing that is much strange (and that it happens on two machine !!) it is that to the inside of the log file I have: 

Oct 14 11:20:05 fw4 ipsec_setup: KLIPS ipsec0 on eth0 213.92.106.59/255.255.255.248 broadcast 213.92.106.63

..but and then in ifconfig I don't view a ipsec0 interface !!

thanks!! I do not know just what altr I can make !!

        Salvatore.

----- Original Message ----- 
From: "sasa" <sasa at shoponweb.it>
To: "Paul Wouters" <paul at xelerance.com>
Cc: <users at openswan.org>
Sent: Wednesday, October 12, 2005 4:32 PM
Subject: Re: [Openswan Users] Klips patch


..an another information is then when:

#modprobe ipsec
FATAL: Module ipsec not found

??
still thanks.

        Salvatore.

----- Original Message ----- 
From: "Paul Wouters" <paul at xelerance.com>
To: "sasa" <sasa at shoponweb.it>
Cc: <users at openswan.org>
Sent: Tuesday, October 11, 2005 9:35 PM
Subject: Re: [Openswan Users] Klips patch


> On Tue, 11 Oct 2005, sasa wrote:
> 
> >> Please dowload openswan-2.4.0-1.src.rpm from the openswan ftp/www site. Then
> >> do the following:
> >>
> >> rpm -hiv openswan-2.4.0-1.src.rpm
> >> cd /usr/src/redhat/SOURCES
> >> tar zxvf openswan-2.4.0.tar.gz
> >> cd openswan-2.4.0/packaging/redhat/
> > [cut]
> >>
> >> That should give you a new openswan-klips package you can install that
> >> should have support for nat-t. It will also give you a new openswan package
> >> that matches the openswan-klips package. Install both using "rpm -Uhv"
> >
> > ..I have made all operation and all it's ok, but the ipsec0 interfaces isn't create (the same error then I have indicated in thread with subject 'interface ipsec0 not created') and I have:
> >
> > [root at localhost ~]# ipsec verify
> > Checking your system to see if IPsec got installed and started correctly:
> > Version check and ipsec on-path                                 [OK]
> > Linux Openswan U2.4.0/K2.6.12-1.1378_FC3 (netkey)
> 
> You are still using netkey and not klips. Make sure af_key and esp4 are not
> loaded as modules and that ipsec is loaded as module.
> 
> > which: no setkey in (/sbin:/usr/bin:/usr/local/sbin:/usr/sbin:/usr/sbin:/sbin:/usr/sbin:/usr/local/bin:/bin:/usr/bin)
> 
> That's fine, you don't need setkey if using openswan-2.4.x.
> 
> Paul
> 
_______________________________________________
Users mailing list
Users at openswan.org
http://lists.openswan.org/mailman/listinfo/users



More information about the Users mailing list