[Openswan Users] Installation/setup issues...

Paul Wouters paul at xelerance.com
Tue Mar 4 15:00:34 EST 2008


On Tue, 4 Mar 2008, Jacco de Leeuw wrote:

> > The linux box im trying to connect to the VPN server with is behind a
> > DSL router (does NAT).
>
> > ignoring unknown Vendor ID payload [4f457a7d4646466667725f65]
>
> Hm, that's odd. If the remote side is Openswan too, it should know
> about this Vendor ID.

We generate a vendorid per build. But you can al recognise them, since
they start with "OE" (4F45). I think there is code in 2.5.x that tries
to match these to "openswan".

> >     pfs=no
>
> Once you get things working you can even switch to pfs=yes because
> the remote side also supports it.

Actually, I would do it right away to avoid rekey problems when initiator
and responder switch.

Paul
-- 
Building and integrating Virtual Private Networks with Openswan:
http://www.amazon.com/gp/product/1904811256/104-3099591-2946327?n=283155


More information about the Users mailing list