[Openswan dev] Host2host tunnels not working with klips

Ruben Laban r.laban at ism.nl
Thu May 26 07:52:00 EDT 2011


On Thursday 26 May 2011 at 13:05 (CET), Ruben Laban wrote:
> I cannot get host2host tunnels to work properly using klips with latest
> openswan version(s). The tunnel comes up just fine, but rekeying fails. The
> tunnel itself isn't working well either. What I see while monitoring on a
> router in between is that there's ike and esp traffic flowing both ways. So
> it seems the sending of ike traffic and encyption of tunnel traffic is
> working fine. However, the receiving/parsing of ike traffic and decyrption
> of tunnel traffic seems to be broken. If more info is needed, let me know.

Some more info:

The testing is done 32bits Ubuntu VMs. With the 2.6.24 based kernel (hardy) it 
does work. With the 2.6.32 based kernel (lucid) it does not work. Vanilla 
2.6.38.7 kernel does not work either.

Regards,
Ruben Laban


More information about the Dev mailing list