[Openswan Users] pending review: connection "roadwarrior" was not up, skipped ; cannot initiate connection without knowing peer IP address

Fabio Ferreira fabio.ferreira at markway.com.br
Thu Dec 29 15:52:29 CET 2005


Dear,

My system is FedoraCore 4 with ipsec and openswan.
I had some problems to start my roadwarrior. Someone can help me?

Comand: 
[root at frwifp ipsec.d]# ipsec verify
Checking your system to see if IPsec got installed and started
correctly:
Version check and ipsec on-path                                 [OK]
Linux Openswan U2.4.4/K2.6.11-1.1369_FC4 (netkey)
Checking for IPsec support in kernel                            [OK]
Checking for RSA private key (/etc/ipsec.secrets)               [OK]
Checking that pluto is running                                  [OK]
Two or more interfaces found, checking IP forwarding            [OK]
Checking NAT and MASQUERADEing
Checking for 'ip' command                                       [OK]
Checking for 'iptables' command                                 [OK]
Checking for 'setkey' command for NETKEY IPsec stack support    [OK]
Opportunistic Encryption Support
[DISABLED]

Comand:
[root at frwifp quickstarts]#  ipsec auto --up roadwarrior_privado
029 "roadwarrior_privado": cannot initiate connection without knowing
peer IP address (kind=CK_TEMPLATE)

Log from /var/log/secure:


oading secrets from "/etc/ipsec.secrets"
Dec 29 15:46:53 frwifp pluto[13354]: | loaded private key for keyid:
PPK_RSA:AQNyvoFsg
Dec 29 15:46:53 frwifp pluto[13354]:   loaded private key file
'/etc/ipsec.d/private/privado.key' (1639 bytes)
Dec 29 15:46:53 frwifp pluto[13354]: |   file content is not binary
ASN.1
Dec 29 15:46:53 frwifp pluto[13354]: |   -----BEGIN RSA PRIVATE KEY-----
Dec 29 15:46:53 frwifp pluto[13354]: |   Proc-Type: 4,ENCRYPTED
Dec 29 15:46:53 frwifp pluto[13354]: |   DEK-Info:
DES-EDE3-CBC,555B41CBA9C76F84
Dec 29 15:46:53 frwifp pluto[13354]: |   -----END RSA PRIVATE KEY-----
Dec 29 15:46:53 frwifp pluto[13354]: |   decrypting file using
'DES-EDE3-CBC'
Dec 29 15:46:53 frwifp pluto[13354]: |   file coded in PEM format
Dec 29 15:46:53 frwifp pluto[13354]: | L0 - RSAPrivateKey:
Dec 29 15:46:53 frwifp pluto[13354]: | L1 - version:
Dec 29 15:46:53 frwifp pluto[13354]: | L1 - modulus:
Dec 29 15:46:53 frwifp pluto[13354]: | L1 - publicExponent:
Dec 29 15:46:53 frwifp pluto[13354]: | L1 - privateExponent:
Dec 29 15:46:53 frwifp pluto[13354]: | L1 - prime1:
Dec 29 15:46:53 frwifp pluto[13354]: | L1 - prime2:
Dec 29 15:46:53 frwifp pluto[13354]: | L1 - exponent1:
Dec 29 15:46:53 frwifp pluto[13354]: | L1 - exponent2:
Dec 29 15:46:53 frwifp pluto[13354]: | L1 - coefficient:
Dec 29 15:46:53 frwifp pluto[13354]: | loaded private key for keyid:
PPK_RSA:AwEAAaJlL
Dec 29 15:46:53 frwifp pluto[13354]: | next event EVENT_PENDING_PHASE2
in 119 seconds

Dec 29 15:47:04 frwifp pluto[13354]: |
Dec 29 15:47:04 frwifp pluto[13354]: | *received whack message
Dec 29 15:47:04 frwifp pluto[13354]: | next event EVENT_PENDING_PHASE2
in 108 seconds
Dec 29 15:48:13 frwifp pluto[13354]: |
Dec 29 15:48:13 frwifp pluto[13354]: | *received whack message
Dec 29 15:48:13 frwifp pluto[13354]: | processing connection
roadwarrior_privado
Dec 29 15:48:13 frwifp pluto[13354]: "roadwarrior_privado": cannot
initiate connection without knowing peer IP address (kind=CK_TEMPLATE)
Dec 29 15:48:13 frwifp pluto[13354]: | next event EVENT_PENDING_PHASE2
in 39 seconds
Dec 29 15:48:52 frwifp pluto[13354]: |
Dec 29 15:48:52 frwifp pluto[13354]: | *time to handle event
Dec 29 15:48:52 frwifp pluto[13354]: | handling event
EVENT_PENDING_PHASE2
Dec 29 15:48:52 frwifp pluto[13354]: | event after this is
EVENT_REINIT_SECRET in 3480 seconds
Dec 29 15:48:52 frwifp pluto[13354]: | inserting event
EVENT_PENDING_PHASE2, timeout in 120 seconds
Dec 29 15:48:52 frwifp pluto[13354]: | pending review: connection
"roadwarrior_privado" was not up, skipped
Dec 29 15:48:52 frwifp pluto[13354]: | next event EVENT_PENDING_PHASE2
in 120 seconds

Any ideas?

Thanks,

Fabio



More information about the Users mailing list