[Openswan Users] Can ping, but can't do anything else

Ross Anderson rosander at owbn.org
Tue Oct 5 20:14:08 CEST 2004


Could you post an example of what you did? 

I'm having similar issues with a 2.6 kernel and the most recent version
of openswan. Large ping packets and anything else does not traverse.
I've set MTU and tcp-mss clamping and no luck. I tried exempting esp
prot but didn't have much luck. Comments? 



Message: 1
Date: Mon, 4 Oct 2004 19:57:12 -0400
From: Jeremy Baker <jab at muskokatech.ca>
Subject: Re: [Openswan Users] Can ping, but can't do anything else
To: users at openswan.org
Message-ID: <200410041957.13445.jab at muskokatech.ca>
Content-Type: text/plain; charset="utf-8"

I had a similar problem, and just had to make sure that ipsec packets
were 
exempt from masquerading.

On Monday 04 October 2004 17:24, P wrote:
> I actually found my problem to be firewall related.  I had my own
custom
> firewall script that I've been running and modifing for the last 3
years
> or so .... well just on a hunch i tried one of the prefab firewalls
that
> was reccamended in the docs
> (http://heimdall.asgardsrealm.net/linux/firewall/) and low and behold
> ... my VPN worked.  I'd be glad to help you out if you need any
> help..... I spent many a late night trying to figure out what my
problem
> was .....
>
> Luis Rodrigues wrote:
> > OK, at least I'm not the only one with this problem. I've found this
> > in the mailing list:
> >
> > It's from P, ipsec at dogclan.com .
> >
> >
> >
> > Anyone with an answer?
> >
> >
> >
> >/The tunnels come up and I can ping across the vpn with no problem.
I /
> >
> >/can ping from a client machine to another client, ect.  But that's
it.  /
> >
> >/I can do anthing else.  Cant access shares, can't connect via remote
/
> >
> >/desktop, can't connect to another remote admin program I've
installed /
> >
> >/for testing, can't connect to a mail server that's on the other side
of /
> >
> >/the vpn.  It seems the only thing I can do is ping.  I'm not getting
any
> > /
> >
> >/firewall hits if I watch /var/log/messages while trying to use any
of /
> >
> >/the previously mentions apps so I'm sure it's not firewall stopping
it. 
> > /
> >
> >/I've tried running the app from subnet 1 and run tcpdump on eth1 on
/
> >
> >/gateway 2 and I see the packets going across that interface.  At
this /
> >
> >/point I'm pretty stumped./
> >
> >
> >
> >
> >
> > Anyone with an answer?
> >
> >
> >
> >
> >
> >
> >
> >
------------------------------------------------------------------------
> >
> > *De:* users-bounces at openswan.org [mailto:users-bounces at openswan.org]
> > *Em nome de *Luis Rodrigues
> > *Enviada:* segunda-feira, 4 de Outubro de 2004 16:26
> > *Para:* users at openswan.org
> > *Assunto:* [Openswan Users] Can ping, but can't do anything else
> >
> >
> >
> > I've sent this mail to the list, but no one reply'ed it. Can anyone
> > help me?
> >
> > I've been working on this for weeks now, and i'm getting desperate!
> >
> >
> >
> >
> >
> > / /
> >
> > /I've found something quite strange with tcpdump./
> >
> > / /
> >
> > /using tcpdump in the eth0, the one that connects to the router, i
> > found out  that when i ping the remote host, i can see the (at lesat
i
> > think it is) ESP packets going, but the reply packets come in the
> > clear, marked with icmp reply./
> >
> > / /
> >
> > /Is this normal?/
> >
> > / /
> >
> > /The strange thing is that icmp works no matter what routing setup i
> > test, but nothing else works. I really need to use windows machines,
> > and i have a big problem on my hands...../
> >
> > / /
> >
> >
> >
>
>-----------------------------------------------------------------------
-
> >
> >_______________________________________________
> >Users mailing list
> >Users at openswan.org
> >http://lists.openswan.org/mailman/listinfo/users

-- 
Jeremy Baker <jab at muskokatech.ca>
GnuPGP fingerprint =
EE66 AC49 E008 E09A 7A2A  0195 50EF 580B EDBB 95B6
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: not available
Url :
http://lists.openswan.org/pipermail/users/attachments/20041004/c7ce8103/
attachment-0001.bin

------------------------------

Message: 2
Date: Tue, 5 Oct 2004 10:10:00 +0200
From: Ingo Bruell <ibruell at gmx.de>
Subject: [Openswan Users] cannot allocate memory
To: users at openswan.org
Message-ID: <1456963042.20041005101000 at gmx.de>
Content-Type: text/plain; charset="us-ascii"

Hi,


Sometime this error happen if i try to replace and bring up a tunnel:


112 "conna" #97: STATE_QUICK_I1: initiate
003 "conna" #97: ERROR: netlink response for Add SA
comp.de9c at 80.134.185.12 included errno 12: Cannot allocate memory
032 "conna" #97: STATE_QUICK_I1: internal error
010 "conna" #97: STATE_QUICK_I1: retransmission; will wait 20s for
response
003 "conna" #97: ERROR: netlink response for Add SA
comp.de9c at 80.134.185.12 included errno 12: Cannot allocate memory
032 "conna" #97: STATE_QUICK_I1: internal error
010 "conna" #97: STATE_QUICK_I1: retransmission; will wait 40s for
response
003 "conna" #97: ERROR: netlink response for Add SA
comp.de9c at 80.134.185.12 included errno 12: Cannot allocate memory


I  am  using  openswan  2.2.0-3  with  debian  sarge and debian kernel
2.6.8-1. I am using aes256-md5 for encryption.


best regards

Ingo Bruell

---
<ibruell at gmx.de>
<ICQ# 40377720>
Oldenburg  PGP-Fingerprint: CB01 AE12 B359 87C4 BF1C  953C 8FE7 C648
169E E5FC
Germany    PGP-Public-Key available at pgpkeys.mit.edu
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 250 bytes
Desc: not available
Url :
http://lists.openswan.org/pipermail/users/attachments/20041005/d2c02f34/
attachment-0001.bin

------------------------------

Message: 3
Date: Tue, 5 Oct 2004 10:15:19 +0200
From: Ingo Bruell <ibruell at gmx.de>
Subject: [Openswan Users] cannot allocate memory
To: users at openswan.org
Message-ID: <1153406138.20041005101519 at gmx.de>
Content-Type: text/plain; charset="us-ascii"

Hi,

here a trace i found with dmesg:

struct+0xb1/0x101 [xfrm_user]
 [<c49793b5>] xfrm_add_sa+0x2f/0x75 [xfrm_user]
 [<c497a1a9>] xfrm_user_rcv_msg+0x15e/0x182 [xfrm_user]
 [<c01f8e37>] sock_common_recvmsg+0x39/0x4e
 [<c497a204>] xfrm_user_rcv_skb+0x37/0x8b [xfrm_user]
 [<c497a27b>] xfrm_netlink_rcv+0x23/0xab [xfrm_user]
 [<c020d80a>] netlink_data_ready+0x1a/0x51
 [<c020d035>] netlink_sendskb+0x54/0x6f
 [<c020d622>] netlink_sendmsg+0x265/0x276
 [<c018e81a>] copy_to_user+0x2c/0x36
 [<c01f6307>] sock_aio_write+0xe5/0xf3
 [<c01f722d>] sys_recvfrom+0xcd/0xef
 [<c0154042>] __pollwait+0x33/0x9a
 [<c0144834>] do_sync_write+0x74/0x9e
 [<c011f220>] do_timer+0x4c/0xc1
 [<c014491b>] vfs_write+0xbd/0xd9
 [<c01449d5>] sys_write+0x3b/0x63
 [<c0105f97>] syscall_call+0x7/0xb
pluto: page allocation failure. order:4, mode:0xd0
 [<c0130b63>] __alloc_pages+0x291/0x2ab
 [<c0130b9c>] __get_free_pages+0x1f/0x3b
 [<c01334f5>] kmem_getpages+0x1d/0xaf
 [<c0133e6a>] cache_grow+0x9b/0x120
 [<c0134043>] cache_alloc_refill+0x154/0x184
 [<c01341f0>] kmem_cache_alloc+0x2a/0x30
 [<c493c60f>] ipcomp_init_state+0x70/0xe5 [ipcomp]
 [<c4979336>] xfrm_state_construct+0xb1/0x101 [xfrm_user]
 [<c49793b5>] xfrm_add_sa+0x2f/0x75 [xfrm_user]
 [<c497a1a9>] xfrm_user_rcv_msg+0x15e/0x182 [xfrm_user]
 [<c01f8e37>] sock_common_recvmsg+0x39/0x4e
 [<c497a204>] xfrm_user_rcv_skb+0x37/0x8b [xfrm_user]
 [<c497a27b>] xfrm_netlink_rcv+0x23/0xab [xfrm_user]
 [<c020d80a>] netlink_data_ready+0x1a/0x51
 [<c020d035>] netlink_sendskb+0x54/0x6f
 [<c020d622>] netlink_sendmsg+0x265/0x276
 [<c018e81a>] copy_to_user+0x2c/0x36
 [<c01f6307>] sock_aio_write+0xe5/0xf3
 [<c01f722d>] sys_recvfrom+0xcd/0xef
 [<c0154042>] __pollwait+0x33/0x9a
 [<c0144834>] do_sync_write+0x74/0x9e
 [<c011f220>] do_timer+0x4c/0xc1
 [<c014491b>] vfs_write+0xbd/0xd9
 [<c01449d5>] sys_write+0x3b/0x63
 [<c0105f97>] syscall_call+0x7/0xb
pluto: page allocation failure. order:4, mode:0xd0
 [<c0130b63>] __alloc_pages+0x291/0x2ab
 [<c0130b9c>] __get_free_pages+0x1f/0x3b
 [<c01334f5>] kmem_getpages+0x1d/0xaf
 [<c0133e6a>] cache_grow+0x9b/0x120
 [<c0134043>] cache_alloc_refill+0x154/0x184
 [<c01341f0>] kmem_cache_alloc+0x2a/0x30
 [<c493c60f>] ipcomp_init_state+0x70/0xe5 [ipcomp]
 [<c4979336>] xfrm_state_construct+0xb1/0x101 [xfrm_user]
 [<c49793b5>] xfrm_add_sa+0x2f/0x75 [xfrm_user]
 [<c497a1a9>] xfrm_user_rcv_msg+0x15e/0x182 [xfrm_user]
 [<c01f8e37>] sock_common_recvmsg+0x39/0x4e
 [<c497a204>] xfrm_user_rcv_skb+0x37/0x8b [xfrm_user]
 [<c497a27b>] xfrm_netlink_rcv+0x23/0xab [xfrm_user]
 [<c020d80a>] netlink_data_ready+0x1a/0x51
 [<c020d035>] netlink_sendskb+0x54/0x6f
 [<c020d622>] netlink_sendmsg+0x265/0x276
 [<c018e81a>] copy_to_user+0x2c/0x36
 [<c01f6307>] sock_aio_write+0xe5/0xf3
 [<c01f722d>] sys_recvfrom+0xcd/0xef
 [<c0154042>] __pollwait+0x33/0x9a
 [<c0144834>] do_sync_write+0x74/0x9e
 [<c011f220>] do_timer+0x4c/0xc1
 [<c014491b>] vfs_write+0xbd/0xd9
 [<c01449d5>] sys_write+0x3b/0x63
 [<c0105f97>] syscall_call+0x7/0xb
pluto: page allocation failure. order:4, mode:0xd0
 [<c0130b63>] __alloc_pages+0x291/0x2ab
 [<c0130b9c>] __get_free_pages+0x1f/0x3b
 [<c01334f5>] kmem_getpages+0x1d/0xaf
 [<c0133e6a>] cache_grow+0x9b/0x120
 [<c0134043>] cache_alloc_refill+0x154/0x184
 [<c01341f0>] kmem_cache_alloc+0x2a/0x30
 [<c493c60f>] ipcomp_init_state+0x70/0xe5 [ipcomp]
 [<c4979336>] xfrm_state_construct+0xb1/0x101 [xfrm_user]
 [<c49793b5>] xfrm_add_sa+0x2f/0x75 [xfrm_user]
 [<c497a1a9>] xfrm_user_rcv_msg+0x15e/0x182 [xfrm_user]
 [<c01f8e37>] sock_common_recvmsg+0x39/0x4e
 [<c497a204>] xfrm_user_rcv_skb+0x37/0x8b [xfrm_user]
 [<c497a27b>] xfrm_netlink_rcv+0x23/0xab [xfrm_user]
 [<c020d80a>] netlink_data_ready+0x1a/0x51
 [<c020d035>] netlink_sendskb+0x54/0x6f
 [<c020d622>] netlink_sendmsg+0x265/0x276
 [<c018e81a>] copy_to_user+0x2c/0x36
 [<c01f6307>] sock_aio_write+0xe5/0xf3
 [<c01f722d>] sys_recvfrom+0xcd/0xef
 [<c0154042>] __pollwait+0x33/0x9a
 [<c0144834>] do_sync_write+0x74/0x9e
 [<c011f220>] do_timer+0x4c/0xc1
 [<c014491b>] vfs_write+0xbd/0xd9
 [<c01449d5>] sys_write+0x3b/0x63
 [<c0105f97>] syscall_call+0x7/0xb
pluto: page allocation failure. order:4, mode:0xd0
 [<c0130b63>] __alloc_pages+0x291/0x2ab
 [<c0130b9c>] __get_free_pages+0x1f/0x3b
 [<c01334f5>] kmem_getpages+0x1d/0xaf
 [<c0133e6a>] cache_grow+0x9b/0x120
 [<c0134043>] cache_alloc_refill+0x154/0x184
 [<c01341f0>] kmem_cache_alloc+0x2a/0x30
 [<c493c60f>] ipcomp_init_state+0x70/0xe5 [ipcomp]
 [<c4979336>] xfrm_state_construct+0xb1/0x101 [xfrm_user]
 [<c49793b5>] xfrm_add_sa+0x2f/0x75 [xfrm_user]
 [<c497a1a9>] xfrm_user_rcv_msg+0x15e/0x182 [xfrm_user]
 [<c01f8e37>] sock_common_recvmsg+0x39/0x4e
 [<c497a204>] xfrm_user_rcv_skb+0x37/0x8b [xfrm_user]
 [<c497a27b>] xfrm_netlink_rcv+0x23/0xab [xfrm_user]
 [<c020d80a>] netlink_data_ready+0x1a/0x51
 [<c020d035>] netlink_sendskb+0x54/0x6f
 [<c020d622>] netlink_sendmsg+0x265/0x276
 [<c018e81a>] copy_to_user+0x2c/0x36
 [<c01f6307>] sock_aio_write+0xe5/0xf3
 [<c01f722d>] sys_recvfrom+0xcd/0xef
 [<c0154042>] __pollwait+0x33/0x9a
 [<c0144834>] do_sync_write+0x74/0x9e
 [<c011f220>] do_timer+0x4c/0xc1
 [<c014491b>] vfs_write+0xbd/0xd9
 [<c01449d5>] sys_write+0x3b/0x63
 [<c0105f97>] syscall_call+0x7/0xb
pluto: page allocation failure. order:4, mode:0xd0
 [<c0130b63>] __alloc_pages+0x291/0x2ab
 [<c0130b9c>] __get_free_pages+0x1f/0x3b
 [<c01334f5>] kmem_getpages+0x1d/0xaf
 [<c0133e6a>] cache_grow+0x9b/0x120
 [<c0134043>] cache_alloc_refill+0x154/0x184
 [<c01341f0>] kmem_cache_alloc+0x2a/0x30
 [<c493c60f>] ipcomp_init_state+0x70/0xe5 [ipcomp]
 [<c4979336>] xfrm_state_construct+0xb1/0x101 [xfrm_user]
 [<c49793b5>] xfrm_add_sa+0x2f/0x75 [xfrm_user]
 [<c497a1a9>] xfrm_user_rcv_msg+0x15e/0x182 [xfrm_user]
 [<c01f8e37>] sock_common_recvmsg+0x39/0x4e
 [<c497a204>] xfrm_user_rcv_skb+0x37/0x8b [xfrm_user]
 [<c497a27b>] xfrm_netlink_rcv+0x23/0xab [xfrm_user]
 [<c020d80a>] netlink_data_ready+0x1a/0x51
 [<c020d035>] netlink_sendskb+0x54/0x6f
 [<c020d622>] netlink_sendmsg+0x265/0x276
 [<c018e81a>] copy_to_user+0x2c/0x36
 [<c01f6307>] sock_aio_write+0xe5/0xf3
 [<c01f722d>] sys_recvfrom+0xcd/0xef
 [<c0154042>] __pollwait+0x33/0x9a
 [<c0144834>] do_sync_write+0x74/0x9e
 [<c011f220>] do_timer+0x4c/0xc1
 [<c014491b>] vfs_write+0xbd/0xd9
 [<c01449d5>] sys_write+0x3b/0x63
 [<c0105f97>] syscall_call+0x7/0xb
pluto: page allocation failure. order:4, mode:0xd0
 [<c0130b63>] __alloc_pages+0x291/0x2ab
 [<c0130b9c>] __get_free_pages+0x1f/0x3b
 [<c01334f5>] kmem_getpages+0x1d/0xaf
 [<c0133e6a>] cache_grow+0x9b/0x120
 [<c0134043>] cache_alloc_refill+0x154/0x184
 [<c01341f0>] kmem_cache_alloc+0x2a/0x30
 [<c493c60f>] ipcomp_init_state+0x70/0xe5 [ipcomp]
 [<c4979336>] xfrm_state_construct+0xb1/0x101 [xfrm_user]
 [<c49793b5>] xfrm_add_sa+0x2f/0x75 [xfrm_user]
 [<c497a1a9>] xfrm_user_rcv_msg+0x15e/0x182 [xfrm_user]
 [<c01f8e37>] sock_common_recvmsg+0x39/0x4e
 [<c497a204>] xfrm_user_rcv_skb+0x37/0x8b [xfrm_user]
 [<c497a27b>] xfrm_netlink_rcv+0x23/0xab [xfrm_user]
 [<c020d80a>] netlink_data_ready+0x1a/0x51
 [<c020d035>] netlink_sendskb+0x54/0x6f
 [<c020d622>] netlink_sendmsg+0x265/0x276
 [<c018e81a>] copy_to_user+0x2c/0x36
 [<c01f6307>] sock_aio_write+0xe5/0xf3
 [<c01f722d>] sys_recvfrom+0xcd/0xef
 [<c0154042>] __pollwait+0x33/0x9a
 [<c0144834>] do_sync_write+0x74/0x9e
 [<c011f220>] do_timer+0x4c/0xc1
 [<c014491b>] vfs_write+0xbd/0xd9
 [<c01449d5>] sys_write+0x3b/0x63
 [<c0105f97>] syscall_call+0x7/0xb
pluto: page allocation failure. order:4, mode:0xd0
 [<c0130b63>] __alloc_pages+0x291/0x2ab
 [<c0130b9c>] __get_free_pages+0x1f/0x3b
 [<c01334f5>] kmem_getpages+0x1d/0xaf
 [<c0133e6a>] cache_grow+0x9b/0x120
 [<c0134043>] cache_alloc_refill+0x154/0x184
 [<c01341f0>] kmem_cache_alloc+0x2a/0x30
 [<c493c60f>] ipcomp_init_state+0x70/0xe5 [ipcomp]
 [<c4979336>] xfrm_state_construct+0xb1/0x101 [xfrm_user]
 [<c49793b5>] xfrm_add_sa+0x2f/0x75 [xfrm_user]
 [<c497a1a9>] xfrm_user_rcv_msg+0x15e/0x182 [xfrm_user]
 [<c01f8e37>] sock_common_recvmsg+0x39/0x4e
 [<c497a204>] xfrm_user_rcv_skb+0x37/0x8b [xfrm_user]
 [<c497a27b>] xfrm_netlink_rcv+0x23/0xab [xfrm_user]
 [<c020d80a>] netlink_data_ready+0x1a/0x51
 [<c020d035>] netlink_sendskb+0x54/0x6f
 [<c020d622>] netlink_sendmsg+0x265/0x276
 [<c018e81a>] copy_to_user+0x2c/0x36
 [<c01f6307>] sock_aio_write+0xe5/0xf3
 [<c0116232>] __wake_up+0x21/0x44
 [<c0144834>] do_sync_write+0x74/0x9e
 [<c011f220>] do_timer+0x4c/0xc1
 [<c014491b>] vfs_write+0xbd/0xd9
 [<c01449d5>] sys_write+0x3b/0x63
 [<c0105f97>] syscall_call+0x7/0xb
pluto: page allocation failure. order:4, mode:0xd0
 [<c0130b63>] __alloc_pages+0x291/0x2ab
 [<c0130b9c>] __get_free_pages+0x1f/0x3b
 [<c01334f5>] kmem_getpages+0x1d/0xaf
 [<c0133e6a>] cache_grow+0x9b/0x120
 [<c0134043>] cache_alloc_refill+0x154/0x184
 [<c01341f0>] kmem_cache_alloc+0x2a/0x30
 [<c493c60f>] ipcomp_init_state+0x70/0xe5 [ipcomp]
 [<c4979336>] xfrm_state_construct+0xb1/0x101 [xfrm_user]
 [<c49793b5>] xfrm_add_sa+0x2f/0x75 [xfrm_user]
 [<c497a1a9>] xfrm_user_rcv_msg+0x15e/0x182 [xfrm_user]
 [<c01f8e37>] sock_common_recvmsg+0x39/0x4e
 [<c497a204>] xfrm_user_rcv_skb+0x37/0x8b [xfrm_user]
 [<c497a27b>] xfrm_netlink_rcv+0x23/0xab [xfrm_user]
 [<c020d80a>] netlink_data_ready+0x1a/0x51
 [<c020d035>] netlink_sendskb+0x54/0x6f
 [<c020d622>] netlink_sendmsg+0x265/0x276
 [<c018e81a>] copy_to_user+0x2c/0x36
 [<c01f6307>] sock_aio_write+0xe5/0xf3
 [<c01f722d>] sys_recvfrom+0xcd/0xef
 [<c0154042>] __pollwait+0x33/0x9a
 [<c0144834>] do_sync_write+0x74/0x9e
 [<c011f220>] do_timer+0x4c/0xc1
 [<c014491b>] vfs_write+0xbd/0xd9
 [<c01449d5>] sys_write+0x3b/0x63
 [<c0105f97>] syscall_call+0x7/0xb
pluto: page allocation failure. order:4, mode:0xd0
 [<c0130b63>] __alloc_pages+0x291/0x2ab
 [<c0130b9c>] __get_free_pages+0x1f/0x3b
 [<c01334f5>] kmem_getpages+0x1d/0xaf
 [<c0133e6a>] cache_grow+0x9b/0x120
 [<c0134043>] cache_alloc_refill+0x154/0x184
 [<c01341f0>] kmem_cache_alloc+0x2a/0x30
 [<c493c60f>] ipcomp_init_state+0x70/0xe5 [ipcomp]
 [<c4979336>] xfrm_state_construct+0xb1/0x101 [xfrm_user]
 [<c49793b5>] xfrm_add_sa+0x2f/0x75 [xfrm_user]
 [<c497a1a9>] xfrm_user_rcv_msg+0x15e/0x182 [xfrm_user]
 [<c01f8e37>] sock_common_recvmsg+0x39/0x4e
 [<c497a204>] xfrm_user_rcv_skb+0x37/0x8b [xfrm_user]
 [<c497a27b>] xfrm_netlink_rcv+0x23/0xab [xfrm_user]
 [<c020d80a>] netlink_data_ready+0x1a/0x51
 [<c020d035>] netlink_sendskb+0x54/0x6f
 [<c020d622>] netlink_sendmsg+0x265/0x276
 [<c018e81a>] copy_to_user+0x2c/0x36
 [<c01f6307>] sock_aio_write+0xe5/0xf3
 [<c01f722d>] sys_recvfrom+0xcd/0xef
 [<c0154042>] __pollwait+0x33/0x9a
 [<c0144834>] do_sync_write+0x74/0x9e
 [<c011f220>] do_timer+0x4c/0xc1
 [<c014491b>] vfs_write+0xbd/0xd9
 [<c01449d5>] sys_write+0x3b/0x63
 [<c0105f97>] syscall_call+0x7/0xb
pluto: page allocation failure. order:4, mode:0xd0
 [<c0130b63>] __alloc_pages+0x291/0x2ab
 [<c0130b9c>] __get_free_pages+0x1f/0x3b
 [<c01334f5>] kmem_getpages+0x1d/0xaf
 [<c0133e6a>] cache_grow+0x9b/0x120
 [<c0134043>] cache_alloc_refill+0x154/0x184
 [<c01341f0>] kmem_cache_alloc+0x2a/0x30
 [<c493c60f>] ipcomp_init_state+0x70/0xe5 [ipcomp]
 [<c4979336>] xfrm_state_construct+0xb1/0x101 [xfrm_user]
 [<c49793b5>] xfrm_add_sa+0x2f/0x75 [xfrm_user]
 [<c497a1a9>] xfrm_user_rcv_msg+0x15e/0x182 [xfrm_user]
 [<c01f8e37>] sock_common_recvmsg+0x39/0x4e
 [<c497a204>] xfrm_user_rcv_skb+0x37/0x8b [xfrm_user]
 [<c497a27b>] xfrm_netlink_rcv+0x23/0xab [xfrm_user]
 [<c020d80a>] netlink_data_ready+0x1a/0x51
 [<c020d035>] netlink_sendskb+0x54/0x6f
 [<c020d622>] netlink_sendmsg+0x265/0x276
 [<c018e81a>] copy_to_user+0x2c/0x36
 [<c01f6307>] sock_aio_write+0xe5/0xf3
 [<c01f722d>] sys_recvfrom+0xcd/0xef
 [<c0154042>] __pollwait+0x33/0x9a
 [<c0144834>] do_sync_write+0x74/0x9e
 [<c011f220>] do_timer+0x4c/0xc1
 [<c014491b>] vfs_write+0xbd/0xd9
 [<c01449d5>] sys_write+0x3b/0x63
 [<c0105f97>] syscall_call+0x7/0xb
pluto: page allocation failure. order:4, mode:0xd0
 [<c0130b63>] __alloc_pages+0x291/0x2ab
 [<c0130b9c>] __get_free_pages+0x1f/0x3b
 [<c01334f5>] kmem_getpages+0x1d/0xaf
 [<c0133e6a>] cache_grow+0x9b/0x120
 [<c0134043>] cache_alloc_refill+0x154/0x184
 [<c01341f0>] kmem_cache_alloc+0x2a/0x30
 [<c493c60f>] ipcomp_init_state+0x70/0xe5 [ipcomp]
 [<c4979336>] xfrm_state_construct+0xb1/0x101 [xfrm_user]
 [<c49793b5>] xfrm_add_sa+0x2f/0x75 [xfrm_user]
 [<c497a1a9>] xfrm_user_rcv_msg+0x15e/0x182 [xfrm_user]
 [<c01f8e37>] sock_common_recvmsg+0x39/0x4e
 [<c497a204>] xfrm_user_rcv_skb+0x37/0x8b [xfrm_user]
 [<c497a27b>] xfrm_netlink_rcv+0x23/0xab [xfrm_user]
 [<c020d80a>] netlink_data_ready+0x1a/0x51
 [<c020d035>] netlink_sendskb+0x54/0x6f
 [<c020d622>] netlink_sendmsg+0x265/0x276
 [<c018e81a>] copy_to_user+0x2c/0x36
 [<c01f6307>] sock_aio_write+0xe5/0xf3
 [<c01f722d>] sys_recvfrom+0xcd/0xef
 [<c0154042>] __pollwait+0x33/0x9a
 [<c0144834>] do_sync_write+0x74/0x9e
 [<c011f220>] do_timer+0x4c/0xc1
 [<c014491b>] vfs_write+0xbd/0xd9
 [<c01449d5>] sys_write+0x3b/0x63
 [<c0105f97>] syscall_call+0x7/0xb
pluto: page allocation failure. order:4, mode:0xd0
 [<c0130b63>] __alloc_pages+0x291/0x2ab
 [<c0130b9c>] __get_free_pages+0x1f/0x3b
 [<c01334f5>] kmem_getpages+0x1d/0xaf
 [<c0133e6a>] cache_grow+0x9b/0x120
 [<c0134043>] cache_alloc_refill+0x154/0x184
 [<c01341f0>] kmem_cache_alloc+0x2a/0x30
 [<c493c60f>] ipcomp_init_state+0x70/0xe5 [ipcomp]
 [<c4979336>] xfrm_state_construct+0xb1/0x101 [xfrm_user]
 [<c49793b5>] xfrm_add_sa+0x2f/0x75 [xfrm_user]
 [<c497a1a9>] xfrm_user_rcv_msg+0x15e/0x182 [xfrm_user]
 [<c01f8e37>] sock_common_recvmsg+0x39/0x4e
 [<c497a204>] xfrm_user_rcv_skb+0x37/0x8b [xfrm_user]
 [<c497a27b>] xfrm_netlink_rcv+0x23/0xab [xfrm_user]
 [<c020d80a>] netlink_data_ready+0x1a/0x51
 [<c020d035>] netlink_sendskb+0x54/0x6f
 [<c020d622>] netlink_sendmsg+0x265/0x276
 [<c018e81a>] copy_to_user+0x2c/0x36
 [<c01f6307>] sock_aio_write+0xe5/0xf3
 [<c01f722d>] sys_recvfrom+0xcd/0xef
 [<c0144834>] do_sync_write+0x74/0x9e
 [<c011f220>] do_timer+0x4c/0xc1
 [<c014491b>] vfs_write+0xbd/0xd9
 [<c01449d5>] sys_write+0x3b/0x63
 [<c0105f97>] syscall_call+0x7/0xb
pluto: page allocation failure. order:4, mode:0xd0
 [<c0130b63>] __alloc_pages+0x291/0x2ab
 [<c0130b9c>] __get_free_pages+0x1f/0x3b
 [<c01334f5>] kmem_getpages+0x1d/0xaf
 [<c0133e6a>] cache_grow+0x9b/0x120
 [<c0134043>] cache_alloc_refill+0x154/0x184
 [<c01341f0>] kmem_cache_alloc+0x2a/0x30
 [<c493c60f>] ipcomp_init_state+0x70/0xe5 [ipcomp]
 [<c4979336>] xfrm_state_construct+0xb1/0x101 [xfrm_user]
 [<c49793b5>] xfrm_add_sa+0x2f/0x75 [xfrm_user]
 [<c497a1a9>] xfrm_user_rcv_msg+0x15e/0x182 [xfrm_user]
 [<c01f8e37>] sock_common_recvmsg+0x39/0x4e
 [<c497a204>] xfrm_user_rcv_skb+0x37/0x8b [xfrm_user]
 [<c497a27b>] xfrm_netlink_rcv+0x23/0xab [xfrm_user]
 [<c020d80a>] netlink_data_ready+0x1a/0x51
 [<c020d035>] netlink_sendskb+0x54/0x6f
 [<c020d622>] netlink_sendmsg+0x265/0x276
 [<c018e81a>] copy_to_user+0x2c/0x36
 [<c01f6307>] sock_aio_write+0xe5/0xf3
 [<c01f722d>] sys_recvfrom+0xcd/0xef
 [<c0154042>] __pollwait+0x33/0x9a
 [<c0144834>] do_sync_write+0x74/0x9e
 [<c011f220>] do_timer+0x4c/0xc1
 [<c014491b>] vfs_write+0xbd/0xd9
 [<c01449d5>] sys_write+0x3b/0x63
 [<c0105f97>] syscall_call+0x7/0xb

 


best regards

Ingo Bruell

---
<ibruell at gmx.de>
<ICQ# 40377720>
Oldenburg  PGP-Fingerprint: CB01 AE12 B359 87C4 BF1C  953C 8FE7 C648
169E E5FC
Germany    PGP-Public-Key available at pgpkeys.mit.edu
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 250 bytes
Desc: not available
Url :
http://lists.openswan.org/pipermail/users/attachments/20041005/4cb8eacb/
attachment-0001.bin

------------------------------

Message: 4
Date: Tue, 5 Oct 2004 10:35:20 +0200 (MET DST)
From: Paul Wouters <paul at xelerance.com>
Subject: Re: [Openswan Users] cannot allocate memory
To: Ingo Bruell <ibruell at gmx.de>
Cc: users at openswan.org
Message-ID: <Pine.LNX.4.61.0410051034420.2325 at expansionpack.xtdnet.nl>
Content-Type: TEXT/PLAIN; charset=US-ASCII; format=flowed

On Tue, 5 Oct 2004, Ingo Bruell wrote:

> 112 "conna" #97: STATE_QUICK_I1: initiate
> 003 "conna" #97: ERROR: netlink response for Add SA
comp.de9c at 80.134.185.12 included errno 12: Cannot allocate memory

This is a known bug in older 2.6 kernels. disable compression.

Paul
-- 
 	"Non cogitamus, ergo nihil sumus"

------------------------------

_______________________________________________
Users mailing list
Users at openswan.org
http://lists.openswan.org/mailman/listinfo/users


End of Users Digest, Vol 11, Issue 8
************************************




More information about the Users mailing list