[Openswan Users] Again: "no connection is known for..."

Jacco de Leeuw jacco2 at dds.nl
Wed Mar 30 13:02:49 CEST 2005


Piero Filippin wrote:

>  Mar 30 09:28:55 ipcop pluto[5304]: "Laptop"[1] 192.168.1.108 #1: cannot 
> respond to IPsec SA request because no connection is known for 
> 192.168.1.100[C=UK, O=Initiative, 
> CN=initiative.localdomain]:17/1701...192.168.1.108[C=UK, O=Initiative, 
> CN=Piero Laptop]:17/1701

You continue to use the New Connection Wizard (i.e. L2TP/IPsec) on your
XP client while your IPCop box expects IPsec without L2TP.

Which of these two VPN methods do you want to use? If it is L2TP/IPsec,
you will have to modify the ipsec.conf on your IPCop box so that it
accepts L2TP connections. See the example configuration on the
elminster.com website, especially the section "conn RoadWarriorX509".

If it is plain IPsec, do not use the New Connection Wizard to create
the VPN connection. Use Marcus Mueller's tool or a third-party IPsec
client.

Jacco
-- 
Jacco de Leeuw                         mailto:jacco2 at dds.nl
Zaandam, The Netherlands           http://www.jacco2.dds.nl


More information about the Users mailing list