[Openswan Users] VPN starts but fails two minutes later

Paul Wouters paul at xelerance.com
Fri Aug 18 11:47:45 EDT 2006


On Fri, 18 Aug 2006, Ludovic MARCILLY wrote:

> When i try to create VPN, it works but it fails two minutes after!

Show us the log entries.

> When i look at connection status on winXP, i can see the total of bytes send increase but not the total of bytes received.

It is likely the Windows machine is hanging up for a reason.

> Also, i have a question about nat-transversal, openswan is already patched but i think this options should be on 'no'. Am i wrong?

check 'ipsec --version'. If using KLIPs, you need to have the natt-patch
applied. otherwise you do not. The startup messages in the logs will
tell you if nat-t was detected or not.

> I use Openswan 1.0.7, i know it's an old version but i can success to open VPN with that version, it's better!

"openvpn" is not ipsec, so you can't mean you are connecting openswan
to openvpn.  openswan 1.0.7 is old, is lacking various security fixes,
and the entire openswan-1 series has been EOL's a while back

Paul
-- 
Building and integrating Virtual Private Networks with Openswan:
http://www.amazon.com/gp/product/1904811256/104-3099591-2946327?n=283155


More information about the Users mailing list