[Openswan Users] openswan startup and version interoperability

Brian Sheets brians at fl240.com
Mon Jul 31 23:26:42 CEST 2006


http://plambert.net/~brians/openswan.txt

ok, Hopefully I got all the stuff out that will expose me.. and you
don't want me exposing myself :D

b

-----Original Message-----
From: Paul Wouters [mailto:paul at xelerance.com] 
Sent: Monday, July 31, 2006 8:47 PM
To: Brian Sheets
Cc: Andy Gay; users at openswan.org
Subject: RE: [Openswan Users] openswan startup and version
interoperability

On Mon, 31 Jul 2006, Brian Sheets wrote:

> No, no established on the other side
>
> I get this if I try to ipsec auto --up net-to-net on gateway1
>
> gateway1:~# ipsec auto --up net-to-net
> 112 "net-to-net" #603: STATE_QUICK_I1: initiate
> 010 "net-to-net" #603: STATE_QUICK_I1: retransmission; will wait 20s
for
> response

the other end rejected your packets it seems

> Anything I can send to the list to help troubleshoot this?

Create 'ipsec barf' outputs on both ends right after this happens, and
put those on a website and post the links to the list, and we can have
a look at it.

Paul




More information about the Users mailing list