[Openswan Users]

Paul Wouters paul at xelerance.com
Tue Aug 8 18:58:59 EDT 2006


On Tue, 8 Aug 2006, Greg wrote:

> conn roadwarrior-l2tp
>         left=%defaultroute
>         leftcert=/etc/ipsec.d/certs/cert.pem
>         leftprotoport=17/1701
>         right=%any

You cannot use both %defaultroute and %any, because then openswan
cannot determine if it is left or right.
Since this is the server end, I assume that you know the IP for left=

> Aug  8 23:17:01 darko pluto[4751]: packet from 90.95.19.131:500: initial
> Main Mode message received on 192.168.0.4:500 but no connection has been
> authorized

That's because of the reasons above.

Paul
-- 
Building and integrating Virtual Private Networks with Openswan:
http://www.amazon.com/gp/product/1904811256/104-3099591-2946327?n=283155


More information about the Users mailing list