[Openswan Users] Setup hangs on 'STATE_QUICK_I1: initiate'

Bruno Diniz bruno.diniz at gmail.com
Wed Dec 7 10:02:11 CET 2005


The log from the router gave me this:

Dec  7 09:58:06 localhost ipsec__plutorun: /usr/lib/ipsec/_plutorun: line 1:
15366 Segmentation fault      /usr/lib/ipsec/pluto --nofork --secretsfile
/etc/ipsec.secrets --ipsecdir /etc/ipsec.d --uniqueids
Dec  7 09:58:06 localhost ipsec__plutorun: !pluto failure!:  exited with
error status 139 (signal 11)
Dec  7 09:58:06 localhost ipsec__plutorun: restarting IPsec after pause...
Dec  7 09:58:17 localhost ipsec_setup: ...Openswan IPsec stopped
Dec  7 09:58:17 localhost ipsec_setup: Stopping Openswan IPsec...
Dec  7 09:58:17 localhost ipsec_setup: Removing orphaned /var/run/pluto.pid:
Dec  7 09:58:18 localhost ipsec_setup: KLIPS ipsec0 on eth0
150.164.254.225/255.255.255.240 broadcast 150.164.254.239
Dec  7 09:58:19 localhost ipsec_setup: ...Openswan IPsec started
Dec  7 09:58:19 localhost ipsec_setup: Restarting Openswan IPsec U2.2.0
/K2.6.8-2-686...

There is a segmentation fault, but I couldn't realize what the problem
was... Do you have any idea of what is causing the problem?

Thanks,

Bruno.

On 12/6/05, Paul Wouters <paul at xelerance.com> wrote:
>
> On Tue, 6 Dec 2005, Bruno Diniz wrote:
>
> > I'm trying to configure a road warrior node to access a private network
> > whose router I administer. My laptop is running openswan 2.4.0 and the
> > router has openswan 2.2.0. I configured both ends, but when I start the
> > connection, it gives me the following output and hangs:
> >
> > root at amilcar:/etc# ipsec auto --verbose --up road-lcc-cluster64
> > 002 "road-lcc-cluster64" #7: initiating Main Mode
> > 104 "road-lcc-cluster64" #7: STATE_MAIN_I1: initiate
> > 002 "road-lcc-cluster64" #7: transition from state STATE_MAIN_I1 to
> state
> > STATE_MAIN_I2
> > 106 "road-lcc-cluster64" #7: STATE_MAIN_I2: sent MI2, expecting MR2
> > 002 "road-lcc-cluster64" #7: I did not send a certificate because I do
> not
> > have one.
> > 002 "road-lcc-cluster64" #7: transition from state STATE_MAIN_I2 to
> state
> > STATE_MAIN_I3
> > 108 "road-lcc-cluster64" #7: STATE_MAIN_I3: sent MI3, expecting MR3
> > 002 "road-lcc-cluster64" #7: Main mode peer ID is ID_FQDN: '@
> > cluster64.speed.dcc.ufmg.br'
> > 002 "road-lcc-cluster64" #7: transition from state STATE_MAIN_I3 to
> state
> > STATE_MAIN_I4
> > 004 "road-lcc-cluster64" #7: STATE_MAIN_I4: ISAKMP SA established
> > {auth=OAKLEY_RSA_SIG cipher=oakley_3des_cbc_192 prf=oakley_md5
> > group=modp1536}
> > 002 "road-lcc-cluster64" #8: initiating Quick Mode
> > RSASIG+ENCRYPT+TUNNEL+PFS+UP {using isakmp#7}
> > 117 "road-lcc-cluster64" #8: STATE_QUICK_I1: initiate
> > 010 "road-lcc-cluster64" #8: STATE_QUICK_I1: retransmission; will wait
> 20s
> > for response
> > 010 "road-lcc-cluster64" #8: STATE_QUICK_I1: retransmission; will wait
> 40s
> > for response
>
> The other end is logging the real error. this end is just transmitting.
> check the logs there.
>
> Paul
>



--
Bruno Diniz de Paula
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.openswan.org/pipermail/users/attachments/20051207/8f656daf/attachment.htm


More information about the Users mailing list