[Openswan Users] Pb between Super-Freeswan and XP via NAT

Paul Wouters paul at xelerance.com
Wed Jun 8 16:13:08 CEST 2005


On Wed, 8 Jun 2005, Etienne M wrote:

> config setup
> interfaces="ipsec0=eth0"
> klipsdebug=all
> plutodebug=none
> plutoload="nomade"
> uniqueids=no
> plutostart=nomade
> nat_traversal=yes

You are missing a virtual_private line

> pluto[16791]: "nomade": cannot initiate connection without knowing peer IP

user auto=add not auto=start

> pluto[16791]: "nomade"[2] 192.168.10.30:4500 #1: cannot respond to IPsec SA 
> request because no connection is known for 
> 192.168.10.20/32===200.10.10.10:4500[C=FR, ST=Orsay, L=Essonne, O=My Company 
> Ltd, CN=universite]...192.168.10.30:4500[C=FR, ST=Orsay, L=Essonne, 
> O=universite, CN=NomadeXP]

seems somehow both ends of your conn are in the 192.168.10.* space. That
will not work. It did not seem to reflect what your posted as ipsec.confs
either.

Paul


More information about the Users mailing list