Hi Paul,<br><br>On Wed, 10 Jun 2009, João Kuchnier wrote:<br><br>&gt; &gt; --&gt; OK, but I encountered this errors while compiling...<br><br>#Your email client&#39;s method of quoting is very unreadable to me, just so<br>
#you know...<br><br>Sorry, but I&#39;m using Gmail<br><br>&gt; &gt; <br>&gt; &gt; #make programs install<br>&gt; &gt; #In file included from /home/administrador/openswan-2.6.21/include/certs.h:23,<br>&gt; &gt; #                 from /home/administrador/openswan-2.6.21/lib/libopenswan/id.c:40:<br>
&gt; &gt; #/home/administrador/openswan-2.6.21/include/secrets.h:19:41: error: gmp.h: No such file or directory<br><br>#Install gmp-devel / libgmp3-dev<br><br>--&gt; OK. I installed other three packages too: flex, xmlto and bison.<br>
--&gt; Now I&#39;m facing another problem:<br><br>root@vpn:~/openswan-2.6.21# /etc/init.d/ipsec restart<br>ipsec_setup: Stopping Openswan IPsec...<br>ipsec_setup: Starting Openswan IPsec 2.6.21...<br>ipsec_setup: No KLIPS support found while requested, desperately falling back to netkey<br>
ipsec_setup: NETKEY support found. Use protostack=netkey in /etc/ipsec.conf to avoid attempts to use KLIPS. Attempting to continue with NETKEY<br><br>I used the protostack=netkey option in ipsec.conf but the VPN seems not to start<br>
<br>root@vpn-lyra:~/openswan-2.6.21# /etc/init.d/ipsec restart<br>ipsec_setup: Stopping Openswan IPsec...<br>ipsec_setup: Starting Openswan IPsec U2.6.21/K2.6.24-19-server...<br>ipsec_setup: multiple ip addresses, using  192.168.1.224 on eth0<br>
It stops here...<br><br>Running &quot;ipsec verify&quot;<br><br>Checking your system to see if IPsec got installed and started correctly:<br>Version check and ipsec on-path                                 [OK]<br>Linux Openswan U2.6.21/K2.6.24-19-server (netkey)<br>
Checking for IPsec support in kernel                            [OK]<br>NETKEY detected, testing for disabled ICMP send_redirects       [FAILED]<br><br>  Please disable /proc/sys/net/ipv4/conf/*/send_redirects<br>  or NETKEY will cause the sending of bogus ICMP redirects!<br>
<br>NETKEY detected, testing for disabled ICMP accept_redirects     [FAILED]<br><br>  Please disable /proc/sys/net/ipv4/conf/*/accept_redirects<br>  or NETKEY will accept bogus ICMP redirects!<br><br>Checking for RSA private key (/etc/ipsec.secrets)               [OK]<br>
Checking that pluto is running                                  [OK]<br>Two or more interfaces found, checking IP forwarding            [OK]<br>Checking NAT and MASQUERADEing                              <br>Checking for &#39;ip&#39; command                                       [OK]<br>
Checking for &#39;iptables&#39; command                                 [OK]<br>Opportunistic Encryption Support                                [DISABLED]<br><br>#Paul<br>_______________________________________________<br>
<a href="mailto:Users@openswan.org">Users@openswan.org</a><br><a href="http://lists.openswan.org/mailman/listinfo/users">http://lists.openswan.org/mailman/listinfo/users</a><br>Building and Integrating Virtual Private Networks with Openswan: <br>
<a href="http://www.amazon.com/gp/product/1904811256/104-3099591-2946327?n=283155">http://www.amazon.com/gp/product/1904811256/104-3099591-2946327?n=283155</a><br><br><br>