[Openswan Users] Stops after "ISAKMP SA established"

Antony Gelberg antony at wayforth.co.uk
Wed Dec 14 18:10:15 CET 2005

Antony Gelberg wrote:
> Hi all,
> We have an openswan gateway with two XP roadwarriors.  One connects
> fine.  The other is problematic.  It's a new box, and it doesn't get as
> far as "responding to Quick Mode", rather stops after "ISAKMP SA
> established" - see below.  No other differences in the logs.
> I have checked all the settings I can think of.  Turned on PMTUD.  Tried
> http://support.microsoft.com/default.aspx?kbid=885407.
> What could cause this behaviour?


Turning on oakley logging on XP revealed the answer.  "The netlogon
service couldn't be started".  I'm guessing we need XP Pro for ipsec.  I
didn't know that.  I thought the only difference was domain logons.
We'll be installing Ubuntu instead, I think.

More information about the Users mailing list