[Openswan Users] acquire-netlink

Massimo Mazzoldi mmazzoldi at direte.it
Tue Jun 7 17:15:37 CEST 2005

Hi, all

Today i tried converting a working config with

kernel 2.6.10 + openswan 2.3.0 with klips enabled

in a:

kernel 2.6.20 + openswan 2.3.0 using netkey 

I modified firewall rules and everything went fine: 
every tunnels went up without a problem.

My problem is that as soon as I start Pluto...
the SA gateway itself becomes not reachable in any way from internal lan!!!

I may go through it to reach protected subnets, but I may not ping it (or ssh)
in any way.
>From the pc I see (with tcpdump) incoming traffic but no answer is ever sent

>From #ipsec auto --status

I noticed the following text:

x.x.x.x/32:0 -> x.x.x.x/32:0 => %hold:1 0    %acquire-netlink

I've been looking all around the web (and this mailing list) to find a solution
to the problem.
Yet I couldn't find anything useful... 

Anyone can try to give me a hint on how to solve the problem?

More information about the Users mailing list