[Openswan Users] Connectivity problem...

Paul Wouters paul at xelerance.com
Tue Aug 30 14:19:40 CEST 2005


On Tue, 30 Aug 2005, Yiannis Mavroukakis wrote:

> Aug 29 09:37:43 firewall pluto[29266]:   including NAT-Traversal patch
> (Version 0.6c)
> Aug 29 09:37:43 firewall pluto[29266]: 1 bad entries in virtual_private
> - none loaded

That needs fixing.

> #1: STATE_MAIN_R3: sent MR3, ISAKMP SA established {auth=OAKLEY_RSA_SIG
> cipher=oakley_3des_cbc_192 prf=oakley_sha group=modp2048}
> Aug 29 09:38:08 firewall pluto[29266]: ERROR: "roadwarrior-l2tp"[2]
> 83.x.x.241 #2: netlink write() of XFRM_MSG_ALLOCSPI message for Get SPI
> esp.0 at 217.x.x.83 failed. Errno 111: Connection refused

Did you load on the netkey modules properly? including xfrm4_tunnel?

> #2: next payload type of ISAKMP Hash Payload has an unknown value: 180
> Aug 29 09:38:11 firewall pluto[29266]: "roadwarrior-l2tp"[2] 83.x.x.241
> #2: malformed payload in packet

This is either a wrong PSK, or a bad openswan version. (I believe some
2.2 and 2.3.0 sometimes showed this error)

Paul


More information about the Users mailing list