[Openswan Users] Error 741: freeswan + win2k
Brad Chang
openswan at dotnoc.com
Thu Apr 22 00:21:04 CEST 2004
Hi I have my freeswan connection almost up for roadwarrior x.509 certs with
l2tp/ppp the windows 2000 box connect authenticates and tries to get settings
from the other side but then tells me this error:
error 741: the local computer does not support the required data encryption type
the win2k box is setup to jacco instructions
here is my logs and ipsec.conf I am useing x.509 certs
thanks for any input :-)
Apr 22 02:03:36 vanvpn1 pluto[4606]: "roadwarrior" #5: sent MR3, ISAKMP SA
established
Apr 22 02:03:36 vanvpn1 pluto[4606]: "roadwarrior" #6: responding to Quick Mode
Apr 22 02:03:36 vanvpn1 pluto[4606]: "roadwarrior" #6: IPsec SA established
{ESP=>0xb1c59720 <0xde591eee}
Apr 22 02:03:38 vanvpn1 pluto[4606]: "roadwarrior" #5: received Delete SA
(0xb1c59720) payload: deleting IPSEC State #6
Apr 22 02:03:38 vanvpn1 pluto[4606]: "roadwarrior" #5: received Delete SA
payload: deleting ISAKMP State #5
Apr 22 02:04:38 vanvpn1 pluto[4606]: packet from 66.183.161.119:500: ignoring
Vendor ID payload [MS NT5 ISAKMPOAKLEY 00000002]
Apr 22 02:04:38 vanvpn1 pluto[4606]: "roadwarrior" #7: responding to Main Mode
Apr 22 02:04:38 vanvpn1 pluto[4606]: "roadwarrior" #7: Peer ID is
ID_DER_ASN1_DN: 'C=CA, ST=British Columbia, L=Vancouver, O=dotnoc.com,
OU=network operations, CN=brad, E=support at dotnoc.com'
Apr 22 02:04:38 vanvpn1 pluto[4606]: "roadwarrior" #7: sent MR3, ISAKMP SA
established
Apr 22 02:04:39 vanvpn1 pluto[4606]: "roadwarrior" #8: responding to Quick Mode
Apr 22 02:04:39 vanvpn1 pluto[4606]: "roadwarrior" #8: IPsec SA established
{ESP=>0x5c073432 <0xde591eef}
Apr 22 02:04:41 vanvpn1 pluto[4606]: "roadwarrior" #7: received Delete SA
(0x5c073432) payload: deleting IPSEC State #8
Apr 22 02:04:41 vanvpn1 pluto[4606]: "roadwarrior" #7: received Delete SA
payload: deleting ISAKMP State #7
version 2.0
config setup
forwardcontrol=yes
interfaces="%defaultroute"
klipsdebug=none
plutodebug=none
syslog=syslog.debug
uniqueids=yes
conn %default
keyingtries=1
compress=yes
disablearrivalcheck=no
authby=rsasig
leftrsasigkey=%cert
rightrsasigkey=%cert
conn roadwarrior-net
leftsubnet=172.16.32.0/24
also=roadwarrior
conn roadwarrior
left=65.61.200.145
leftnexthop=%defaultroute
authby=rsasig
auto=add
leftprotoport=17/0
right=66.183.161.119
rightprotoport=17/1701
pfs=no
rightid="C=CA, ST=British Columbia, L=Vancouver, O=dotnoc.com,
OU=network operations, CN=brad, E=support at dotnoc.com"
leftcert=vpn1.dotnoc.pem
keyingtries=3
conn block
auto=ignore
conn private
auto=ignore
conn private-or-clear
auto=ignore
conn clear-or-private
auto=ignore
conn clear
auto=ignore
conn packetdefault
auto=ignore
Thanks and best regards,
-Brad Chang
-http://www.dotnoc.com
-------------------------------------------------------------------
hosting,web design and managed services @ http://www.dotnoc.com
More information about the Users
mailing list