[Openswan dev] Problem with OE

Michael Tautschnig michael.tautschnig at zt-consulting.com
Sat Mar 5 12:17:04 CET 2005


I'm trying to do OE on my private subnet, but it stops at

%hold otherwise handled during DNS lookup for Opportunistic Initiation for to
after receiving the DNS-record (IMHO) correctly. By digging into the 
source I found that this failure is caused by kernel.c:bare_shunt_ptr, 
which returns NULL, because the comparison for

transport_proto == p->transport_proto fails, as

transport_proto = 0,
p->transport_proto = 6

with the only bare_shunt being:
add bare shunt 0x81023c0 -6-> => %hold 0    %acquire-netlink

ipsec.conf read:

conn stud

and policies.d/stud contains

There might be some misconfiguration, but I simply didn't see, where 
transport_proto would have been changed to anything else but "0" - thus I 
assume, this comparison will always yield false.

Thanks in advance,

More information about the Dev mailing list