<html>
<head>
<meta content="text/html; charset=ISO-8859-1"
http-equiv="Content-Type">
</head>
<body text="#000000" bgcolor="#FFFFFF">
<div class="moz-cite-prefix">I'm not too well versed on this stuff,
but I have a few thoughts for you:<br>
<ul>
<li>Make sure your secrets match.</li>
<li>Make sure the IP addresses in your secrets file are
accurate.</li>
<li>Try doing some debugging on the ASA.</li>
<ul>
<li>debug crypto isakmp 200 or even debug crypto isakmp 255</li>
<li>debug crypto ipsec</li>
</ul>
<li>I never could get pfs to work between Openswan and a Cisco
firewall. Try temporarily turning off pfs on both ends and
see if you get any better luck.</li>
</ul>
</div>
</body>
</html>