[Openswan Users]
pending review: connection "roadwarrior" was not up, skipped ;
cannot initiate connection without knowing peer IP address
Fabio Ferreira
fabio.ferreira at markway.com.br
Thu Dec 29 15:52:29 CET 2005
Dear,
My system is FedoraCore 4 with ipsec and openswan.
I had some problems to start my roadwarrior. Someone can help me?
Comand:
[root at frwifp ipsec.d]# ipsec verify
Checking your system to see if IPsec got installed and started
correctly:
Version check and ipsec on-path [OK]
Linux Openswan U2.4.4/K2.6.11-1.1369_FC4 (netkey)
Checking for IPsec support in kernel [OK]
Checking for RSA private key (/etc/ipsec.secrets) [OK]
Checking that pluto is running [OK]
Two or more interfaces found, checking IP forwarding [OK]
Checking NAT and MASQUERADEing
Checking for 'ip' command [OK]
Checking for 'iptables' command [OK]
Checking for 'setkey' command for NETKEY IPsec stack support [OK]
Opportunistic Encryption Support
[DISABLED]
Comand:
[root at frwifp quickstarts]# ipsec auto --up roadwarrior_privado
029 "roadwarrior_privado": cannot initiate connection without knowing
peer IP address (kind=CK_TEMPLATE)
Log from /var/log/secure:
oading secrets from "/etc/ipsec.secrets"
Dec 29 15:46:53 frwifp pluto[13354]: | loaded private key for keyid:
PPK_RSA:AQNyvoFsg
Dec 29 15:46:53 frwifp pluto[13354]: loaded private key file
'/etc/ipsec.d/private/privado.key' (1639 bytes)
Dec 29 15:46:53 frwifp pluto[13354]: | file content is not binary
ASN.1
Dec 29 15:46:53 frwifp pluto[13354]: | -----BEGIN RSA PRIVATE KEY-----
Dec 29 15:46:53 frwifp pluto[13354]: | Proc-Type: 4,ENCRYPTED
Dec 29 15:46:53 frwifp pluto[13354]: | DEK-Info:
DES-EDE3-CBC,555B41CBA9C76F84
Dec 29 15:46:53 frwifp pluto[13354]: | -----END RSA PRIVATE KEY-----
Dec 29 15:46:53 frwifp pluto[13354]: | decrypting file using
'DES-EDE3-CBC'
Dec 29 15:46:53 frwifp pluto[13354]: | file coded in PEM format
Dec 29 15:46:53 frwifp pluto[13354]: | L0 - RSAPrivateKey:
Dec 29 15:46:53 frwifp pluto[13354]: | L1 - version:
Dec 29 15:46:53 frwifp pluto[13354]: | L1 - modulus:
Dec 29 15:46:53 frwifp pluto[13354]: | L1 - publicExponent:
Dec 29 15:46:53 frwifp pluto[13354]: | L1 - privateExponent:
Dec 29 15:46:53 frwifp pluto[13354]: | L1 - prime1:
Dec 29 15:46:53 frwifp pluto[13354]: | L1 - prime2:
Dec 29 15:46:53 frwifp pluto[13354]: | L1 - exponent1:
Dec 29 15:46:53 frwifp pluto[13354]: | L1 - exponent2:
Dec 29 15:46:53 frwifp pluto[13354]: | L1 - coefficient:
Dec 29 15:46:53 frwifp pluto[13354]: | loaded private key for keyid:
PPK_RSA:AwEAAaJlL
Dec 29 15:46:53 frwifp pluto[13354]: | next event EVENT_PENDING_PHASE2
in 119 seconds
Dec 29 15:47:04 frwifp pluto[13354]: |
Dec 29 15:47:04 frwifp pluto[13354]: | *received whack message
Dec 29 15:47:04 frwifp pluto[13354]: | next event EVENT_PENDING_PHASE2
in 108 seconds
Dec 29 15:48:13 frwifp pluto[13354]: |
Dec 29 15:48:13 frwifp pluto[13354]: | *received whack message
Dec 29 15:48:13 frwifp pluto[13354]: | processing connection
roadwarrior_privado
Dec 29 15:48:13 frwifp pluto[13354]: "roadwarrior_privado": cannot
initiate connection without knowing peer IP address (kind=CK_TEMPLATE)
Dec 29 15:48:13 frwifp pluto[13354]: | next event EVENT_PENDING_PHASE2
in 39 seconds
Dec 29 15:48:52 frwifp pluto[13354]: |
Dec 29 15:48:52 frwifp pluto[13354]: | *time to handle event
Dec 29 15:48:52 frwifp pluto[13354]: | handling event
EVENT_PENDING_PHASE2
Dec 29 15:48:52 frwifp pluto[13354]: | event after this is
EVENT_REINIT_SECRET in 3480 seconds
Dec 29 15:48:52 frwifp pluto[13354]: | inserting event
EVENT_PENDING_PHASE2, timeout in 120 seconds
Dec 29 15:48:52 frwifp pluto[13354]: | pending review: connection
"roadwarrior_privado" was not up, skipped
Dec 29 15:48:52 frwifp pluto[13354]: | next event EVENT_PENDING_PHASE2
in 120 seconds
Any ideas?
Thanks,
Fabio
More information about the Users
mailing list