[Openswan dev] interop failture openswan-2.0.0 klips with freebsd 4.8 racoon

Paul Wouters paul at xtdnet.nl
Mon Mar 8 20:00:33 CET 2004


On Mon, 8 Mar 2004, Michael Richardson wrote:

>   What revision of racoon?

Old, whatever came with 4.8 or so.
 
> Mar  1 14:10:35 ar racoon: INFO: pfkey.c:1110:pk_recvupdate(): IPsec-SA established: AH/Transport 193.110.157.17->62.16.0.39 spi=145231124(0x8a80d14)
> Mar  1 14:10:35 ar racoon: INFO: pfkey.c:1110:pk_recvupdate(): IPsec-SA established: ESP/Transport 193.110.157.17->62.16.0.39 spi=162028671(0x9a85c7f)
> Mar  1 14:10:35 ar racoon: INFO: pfkey.c:1322:pk_recvadd(): IPsec-SA established: AH/Transport 62.16.0.39->193.110.157.17 spi=3916326879(0xe96e67df)
> Mar  1 14:10:35 ar racoon: INFO: pfkey.c:1322:pk_recvadd(): IPsec-SA established: ESP/Transport 62.16.0.39->193.110.157.17 spi=3916326880(0xe96e67e0) 
> 
>   What are these AH xforms there? What is all this stuff in transport?
>   I think you misconfigured the racoon side to use ESP+AH. Did you
> intend to do this? If so, WHY?

Yes, that was the configuration on the remote. I asked him to change it to ESP, 
but then it still didn;t work. But I don't seem to have a barf of that situation.

I guess we can't debug it further at this point,

Paul



More information about the Dev mailing list