[Openswan Users] Ipsec Road Warrrior Problem

Peter McGill petermcgill at goco.net
Thu Oct 12 12:09:03 EDT 2006


> Oct 12 17:10:15 axsweb pluto[1411]: "roadwarrior1"[1] 81.244.100.236 #740: Can't authenticate: no preshared key found for 
> `@roadwarrior1.openswan.local' and `%any'.  Attribute OAKLEY_AUTHENTICATION_METHOD

This makes me think there is something wrong with your secrets file.

> @roadwarrior1.openswan.local %any : PSK "PreSharedKey"

However this looks good.

> Oct 12 17:10:15 axsweb pluto[1411]: "roadwarrior1"[1] 81.244.100.236 #740: sending notification NO_PROPOSAL_CHOSEN to 
> 81.244.100.236:500

This usually means there is a problem with your ike and esp lines, they don't match the other end.

> ike="3des-md5-modp1024"

Looks good, but does it match the other side?

> esp="3des-md5-96"

I question if this is correct, given the ike line I would expect to see:

esp=3des-md5

But again, check that it matches to config on the other side of the tunnel.


Peter McGill
Software Developer / Network Administrator
Gra Ham Energy Limited 



More information about the Users mailing list