[Openswan Users] Zyxel Autentication problem

Paul Wouters paul at xelerance.com
Mon Feb 20 21:15:46 CET 2006


On Mon, 20 Feb 2006, sila wrote:

> unknown Vendor ID payload [625027749d5ab97f5616c1602765cf480a3b7d0b]
> Feb 20 11:19:15 Vpn pluto[4153]: "medimatica-zyxel"[1] 82.49.3.138 #1:
> responding to Main Mode from unknown peer 82.49.3.138
> Feb 20 11:19:15 Vpn pluto[4153]: "medimatica-zyxel"[1] 82.49.3.138 #1: only
> OAKLEY_GROUP_MODP1024 and OAKLEY_GROUP_MODP1536 supported.  Attribute
> OAKLEY_GROUP_DESCRIPTION

Use DH-group 2 or 5 (aka modp1024 or modp1524) on the Zyxcel.

> When in the zyxel i chang type of connection from ike to manual
> i have 2 key, one key in autentications for sha1 and a preshared key
> for 3des Why ?

Don't use manual keying.

Paul


More information about the Users mailing list