[Openswan Users] l2tp ike phase 2 quick mode message

George Wu aihuawu at gmail.com
Sun Feb 4 22:49:54 EST 2007


Hi, Paul:

Thank you for the advice.
Now I use the /etc/ipsec.d/examples/l2tp-cert.conf.
I can see the ipsec connection is up.

The key point is:
leftprotoport=17/1701
rightprotoport=17/1701

It seems not necessary for linux to linux.
but mandatory for l2tp.

I am now moving to the 
l2tpd which should be simialiar to ppp.
That should be easy.

George




发件人: Paul Wouters
发送时间: 2007-02-05 00:00:18
收件人: George Wu
抄送: users
主题: Re: Re: [Openswan Users] l2tp ike phase 2 quick mode message

On  Sun,  4  Feb  2007,  George  Wu  wrote:

>  Feb    4  10:22:02  localhost  pluto[4447]:  packet  from  192.168.1.128:500:  initial  Ma
>  in  Mode  message  received  on  192.168.1.131:500  but  no  connection  has  been  authori
>  zed

Your  connections  is  wrong  or  did  not  load  properly.
Either  you  don't  have  auto=add,  or  your  connections  fails  at  bootup,  which  will
appear  in  the  logs  with  a  reason  for  the  failure.

Paul
--  
Building  and  integrating  Virtual  Private  Networks  with  Openswan:
http://www.amazon.com/gp/product/1904811256/104-3099591-2946327?n=283155
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.openswan.org/pipermail/users/attachments/20070205/1edd038c/attachment.html 


More information about the Users mailing list