[Openswan Users] what happens @ STATE_MAIN_I3?

Wimmer, Tobias Wimmer at Saynet.de
Thu Jul 8 13:00:24 CEST 2004


Hi all,

I have to build a VPN tunnel between Openswan 2.1.2 on a Fedora Core 2
and some sort of Cisco on the remote end I do not have control over...
Unfortunately I do not have access to the ciscos log files either...
>From the Openswan log I can see there a problem with or after the
transition to STATE_MAIN_I3.

To narrow down the possibilites what causes this error my question is:
What happens at that point? Can this problem be related to a wrong PSK
or is this something that is done later on...?

Jul  8 11:50:04 mgw pluto[7072]: "L2" #15: initiating Main Mode to
replace #14
Jul  8 11:50:04 mgw pluto[7072]: "L2" #15: transition from state
STATE_MAIN_I1 to state STATE_MAIN_I2
Jul  8 11:50:04 mgw pluto[7072]: "L2" #15: ignoring Vendor ID payload
[Cisco-Unity]
Jul  8 11:50:04 mgw pluto[7072]: "L2" #15: ignoring Vendor ID payload
[Dead Peer Detection]
Jul  8 11:50:04 mgw pluto[7072]: "L2" #15: ignoring Vendor ID payload
[72d874fb8471aa21...]
Jul  8 11:50:04 mgw pluto[7072]: "L2" #15: received Vendor ID payload
[XAUTH]
Jul  8 11:50:04 mgw pluto[7072]: "L2" #15: transition from state
STATE_MAIN_I2 to state STATE_MAIN_I3
Jul  8 11:50:04 mgw pluto[7072]: "L2" #15: encrypted Informational
Exchange message is invalid because it is for incomplete ISAKMP SA

Any help or comments are greatly appreciated...

Thanks,

Tobias Wimmer





More information about the Users mailing list