<html><head><meta http-equiv="Content-Type" content="text/html charset=utf-8"></head><body style="word-wrap: break-word; -webkit-nbsp-mode: space; -webkit-line-break: after-white-space;" class="">Rescued from the Spam bucket. Please remember to subscribe to the mailing list before posting to it.<br class=""><div><br class=""><div class=""><span class="" style="font-family: -webkit-system-font, 'Helvetica Neue', Helvetica, sans-serif; color: rgb(127, 127, 127);"><b class="">From: </b></span><span class="" style="font-family: -webkit-system-font, 'Helvetica Neue', Helvetica, sans-serif;">Willer Wang 王明偉 <<a href="mailto:willer.wang@cybertan.com.tw" style="color: purple;" class="">willer.wang@cybertan.com.tw</a>></span></div><div class=""><div style="font-family: Helvetica; font-size: 12px; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: auto; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: auto; word-spacing: 0px; -webkit-text-stroke-width: 0px; margin: 0px;" class=""><span style="font-family: -webkit-system-font, 'Helvetica Neue', Helvetica, sans-serif; color: rgb(127, 127, 127);" class=""><b class="">To:<span class="Apple-converted-space"> </span></b></span><span style="font-family: -webkit-system-font, 'Helvetica Neue', Helvetica, sans-serif;" class="">"<a href="mailto:users@lists.openswan.org" style="color: purple; text-decoration: underline;" class="">users@lists.openswan.org</a>" <<a href="mailto:users@lists.openswan.org" style="color: purple; text-decoration: underline;" class="">users@lists.openswan.org</a>><br class=""></span></div><div style="font-family: Helvetica; font-size: 12px; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: auto; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: auto; word-spacing: 0px; -webkit-text-stroke-width: 0px; margin: 0px;" class=""><span style="font-family: -webkit-system-font, 'Helvetica Neue', Helvetica, sans-serif; color: rgb(127, 127, 127);" class=""><b class="">Subject:<span class="Apple-converted-space"> </span></b></span><span style="font-family: -webkit-system-font, 'Helvetica Neue', Helvetica, sans-serif;" class=""><b class="">LAN to LAN connection failed with RSA+AGGRESSIVE but succeed with RSA+Main mode</b><br class=""></span></div><div style="font-family: Helvetica; font-size: 12px; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: auto; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: auto; word-spacing: 0px; -webkit-text-stroke-width: 0px; margin: 0px;" class=""><span style="font-family: -webkit-system-font, 'Helvetica Neue', Helvetica, sans-serif; color: rgb(127, 127, 127);" class=""><b class="">Date:<span class="Apple-converted-space"> </span></b></span><span style="font-family: -webkit-system-font, 'Helvetica Neue', Helvetica, sans-serif;" class="">February 1, 2015 at 9:04:03 PM GMT-5<br class=""></span></div><br style="font-family: Helvetica; font-size: 12px; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: auto; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: auto; word-spacing: 0px; -webkit-text-stroke-width: 0px;" class=""><br style="font-family: Helvetica; font-size: 12px; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: auto; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: auto; word-spacing: 0px; -webkit-text-stroke-width: 0px;" class=""><o:smarttagtype namespaceuri="urn:schemas-microsoft-com:office:smarttags" name="chsdate" style="font-family: Helvetica; font-size: 12px; font-style: normal; font-variant: normal; font-weight: normal; letter-spacing: normal; line-height: normal; orphans: auto; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: auto; word-spacing: 0px; -webkit-text-stroke-width: 0px;" class=""><div class="Section1" style="page: Section1;"><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class="">Hi,<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""><o:p class=""> </o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> I got a problem to setup a LAN to LAN VPN environment with RSASIG+AGGRESSIVE<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""><o:p class=""> </o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> Version of OPENSWAN:<span class="Apple-converted-space"> </span><st1:chsdate isrocdate="False" islunardate="False" day="30" month="12" year="1899" w:st="on" class="">2.6.37</st1:chsdate><o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> Topology:<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> <o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> LAN <span class="Apple-converted-space"> </span></span></font><font size="1" face="Wingdings" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Wingdings;" class="">ß</span></font><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""><span class="Apple-converted-space"> </span></span></font><font size="1" face="Wingdings" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Wingdings;" class="">à</span></font><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> Device (A) <span class="Apple-converted-space"> </span></span></font><font size="1" face="Wingdings" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Wingdings;" class="">ß</span></font><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""><span class="Apple-converted-space"> </span></span></font><font size="1" face="Wingdings" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Wingdings;" class="">à</span></font><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""><span class="Apple-converted-space"> </span> WAN <span class="Apple-converted-space"> </span></span></font><font size="1" face="Wingdings" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Wingdings;" class="">ß</span></font><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""><span class="Apple-converted-space"> </span></span></font><font size="1" face="Wingdings" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Wingdings;" class="">à</span></font><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> Device (B) <span class="Apple-converted-space"> </span></span></font><font size="1" face="Wingdings" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Wingdings;" class="">ß</span></font><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""><span class="Apple-converted-space"> </span></span></font><font size="1" face="Wingdings" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Wingdings;" class="">à</span></font><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> LAN<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> 192.168.1.0/24 10.0.0.1 10.0.0.15 192.168.15.0/24<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman'; text-indent: 24pt;" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class="">------------------------<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman'; text-indent: 24pt;" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class="">configure for Device (A)<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman'; text-indent: 24pt;" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class="">------------------------<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman'; text-indent: 24pt;" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class="">config setup<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> listen=<st1:chsdate isrocdate="False" islunardate="False" day="30" month="12" year="1899" w:st="on" class="">10.0.0</st1:chsdate>.1<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""><o:p class=""> </o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman'; text-indent: 24pt;" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class="">conn "ips1"<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> left=<st1:chsdate isrocdate="False" islunardate="False" day="30" month="12" year="1899" w:st="on" class="">10.0.0</st1:chsdate>.1<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> leftsubnet=192.168.1.0/24<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> leftnexthop=<st1:chsdate isrocdate="False" islunardate="False" day="30" month="12" year="1899" w:st="on" class="">10.0.0</st1:chsdate>.15<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> right=<st1:chsdate isrocdate="False" islunardate="False" day="30" month="12" year="1899" w:st="on" class="">10.0.0</st1:chsdate>.15<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> rightsubnet=192.168.15.0/24<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> pfs=no<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> phase2alg=aes128-sha1<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> salifetime=3600s<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> ike=aes128-sha1;modp768<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> aggrmode=yes<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> ikelifetime=28800s<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> rekeymargin=3s<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> leftid=CN=rv130_1<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> rightid=CN=rv130_15<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> authby=rsasig<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> leftcert=rv130_ca.pem<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> leftrsasigkey=%cert<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> rightrsasigkey=%cert<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""><o:p class=""> </o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman'; text-indent: 24pt;" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class="">------------------------------<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman'; text-indent: 24pt;" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class="">ipsec.secrets for Device (A)<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman'; text-indent: 24pt;" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class="">------------------------------<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman'; text-indent: 24pt;" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class="">: RSA pr130.key "password"<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""><o:p class=""> </o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman'; text-indent: 24pt;" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class="">------------------------<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman'; text-indent: 24pt;" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class="">configure for Device (B)<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman'; text-indent: 24pt;" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class="">------------------------<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman'; text-indent: 24pt;" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class="">config setup<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> listen=<st1:chsdate isrocdate="False" islunardate="False" day="30" month="12" year="1899" w:st="on" class="">10.0.0</st1:chsdate>.15<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""><o:p class=""> </o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman'; text-indent: 24pt;" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class="">conn "ips15"<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> left=<st1:chsdate isrocdate="False" islunardate="False" day="30" month="12" year="1899" w:st="on" class="">10.0.0</st1:chsdate>.15<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> leftsubnet=192.168.15.0/24<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> leftnexthop=<st1:chsdate isrocdate="False" islunardate="False" day="30" month="12" year="1899" w:st="on" class="">10.0.0</st1:chsdate>.1<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> right=<st1:chsdate isrocdate="False" islunardate="False" day="30" month="12" year="1899" w:st="on" class="">10.0.0</st1:chsdate>.1<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> rightsubnet=192.168.1.0/24<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> pfs=no<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> phase2alg=aes128-sha1<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> salifetime=3600s<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> ike=aes128-sha1;modp768<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> aggrmode=yes<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> ikelifetime=28800s<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> rekeymargin=3s<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> leftid=CN=rv130_15<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> rightid=CN=rv130_1<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> authby=rsasig<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> leftcert=rv130_ca.pem<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> leftrsasigkey=%cert<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> rightrsasigkey=%cert<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""><o:p class=""> </o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman'; text-indent: 24pt;" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class="">------------------------------<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman'; text-indent: 24pt;" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class="">ipsec.secrets for Device (B)<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman'; text-indent: 24pt;" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class="">------------------------------<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman'; text-indent: 24pt;" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class="">: RSA pr130.key "password"<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> <o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> Now we up tunnel from Device (A) to Device (B), we can find following log.<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> Device (A)<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman'; text-indent: 24pt;" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class="">Feb 2 00:31:55 pluto[1777]: "ips1" #8692: initiating Aggressive Mode #8692, connection "ips1"<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman'; text-indent: 24pt;" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class="">112 "ips1" #8692: STATE_AGGR_I1: initiate<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman'; text-indent: 24pt;" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class="">Feb 2 00:31:55 pluto[1777]: packet from<span class="Apple-converted-space"> </span><st1:chsdate isrocdate="False" islunardate="False" day="30" month="12" year="1899" w:st="on" class="">10.0.0</st1:chsdate>.15:500: ignoring informational payload, type INVALID_ID_INFORMATION on st==NULL (deleted?)<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman'; text-indent: 24pt;" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class="">Feb 2 00:31:55 pluto[1777]: packet from<span class="Apple-converted-space"> </span><st1:chsdate isrocdate="False" islunardate="False" day="30" month="12" year="1899" w:st="on" class="">10.0.0</st1:chsdate>.15:500: received and ignored informational message<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""><o:p class=""> </o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman'; text-indent: 24pt;" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class="">Device (B)<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman'; text-indent: 24pt;" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class="">Feb 17 00:32:36 pluto[1980]: packet from<span class="Apple-converted-space"> </span><st1:chsdate isrocdate="False" islunardate="False" day="30" month="12" year="1899" w:st="on" class="">10.0.0</st1:chsdate>.1:500: received Vendor ID payload [Dead Peer Detection]<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman'; text-indent: 24pt;" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class="">Feb 17 00:32:36 pluto[1980]: "ips15" #8528: Aggressive mode peer ID is ID_DER_ASN1_DN: 'CN=rv130_1'<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman'; text-indent: 24pt;" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class="">Feb 17 00:32:36 pluto[1980]: "ips15" #8528: no suitable connection for peer 'CN=rv130_1'<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman'; text-indent: 24pt;" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class="">Feb 17 00:32:36 pluto[1980]: "ips15" #8528: initial Aggressive Mode packet claiming to be from CN=rv130_1 on<span class="Apple-converted-space"> </span><st1:chsdate isrocdate="False" islunardate="False" day="30" month="12" year="1899" w:st="on" class="">10.0.0</st1:chsdate>.1 but no connection has been authorized<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman'; text-indent: 24pt;" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class="">Feb 17 00:32:36 pluto[1980]: "ips15" #8528: sending notification INVALID_ID_INFORMATION to<span class="Apple-converted-space"> </span><st1:chsdate isrocdate="False" islunardate="False" day="30" month="12" year="1899" w:st="on" class="">10.0.0</st1:chsdate>.1:500<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> <o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> But If I marked “aggrmode=yes” for both Devices, the connection works perfectly.<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> <o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> Does Openswan not support for “aggressive mode + RSASIG” in LAN to LAN mode?<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""> Or someone can give us advice about this problem?<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class=""><o:p class=""> </o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class="">THX<o:p class=""></o:p></span></font></div><div style="margin: 0cm 0cm 0.0001pt; font-size: 12pt; font-family: 'Times New Roman';" class=""><font size="1" face="Arial" class=""><span lang="EN-US" style="font-size: 9pt; font-family: Arial;" class="">/Willer<o:p class=""></o:p></span></font></div></div>This e-mail transmission originated at CyberTAN Technology, Inc., and may contain privileged or confidential information that is the property of CyberTAN and protected by law from disclosure. If you are not an intended recipient of this transmission and you received it in error, please inform the sender by reply e-mail and destroy this and all other copies of this transmission to which you have access. Thank you.<span class="Apple-converted-space"> </span></o:smarttagtype></div></div><br class=""></body></html>