[Openswan Users] incomplete ISAKMP SA ...

Paul Wouters paul at xelerance.com
Wed Mar 31 22:48:02 CEST 2004


On Wed, 31 Mar 2004, andrei wrote:

> "remote" #6: protocol/port in Phase 1 ID Payload must be 0/0 or 17/500 
> but are 17/0 

That is a bug in the Cisco pix. A workaround for this was added recently.

Use: rightprotoport=17/%any

Paul



More information about the Users mailing list