[Openswan Users] One road warrior doesn't connect

Paul Wouters paul at xelerance.com
Sat Dec 16 15:38:40 EST 2006


On Sat, 16 Dec 2006, Brian Hoover wrote:

> Kernel 2.6.14 klips, Linux Openswan U2.4.5rc5/K2.4.5dr3 (klips), Using
> X.509
>
> The setup works well for many users accept one.  When he tries to
> connect using XP's client the sequence below is logged.
> When I review a working connection sequence I see that certs are passed
> after the sent MR2 message, so I recreated and reinstalled his cert,
> still no joy.
>
> How can I find more information about what is stopping this connection?

Does this user have a 2048bit RSA key?

> I tried to enabled ike logging on the M$ box but the log file was never
> populated.

You nedd to reboot before it takes effect.

> Will tcpdump help me?

Not likely

Paul


More information about the Users mailing list