[Openswan Users] Trouble with IPSEC/xl2tpd and multiple connections

The Adept adept at stephans.org
Tue Feb 20 11:14:00 EST 2007


Paul Wouters wrote:
> On Tue, 20 Feb 2007, The Adept wrote:
>
>   
>>> xl2tpd[11133]: Maximum retries exceeded for tunnel 35210.  Closing.
>>> xl2tpd[11133]: Connection 1 closed to 68.178.85.200, port 1701 (Timeout)
>>> xl2tpd[11133]: get_call: can't find call 62984 in tunnel 35210  (ref=0/0)
>>> xl2tpd[11133]: Unable to deliver closing message for tunnel 35210.
>>> Destroying anyway.
>>> xl2tpd[11133]: Can not find tunnel 35210 (refhim=0)
>>> xl2tpd[11133]: network_thread: unable to find call or tunnel to handle
>>> packet.  call = 62984, tunnel = 35210 Dumping.
>>>       
>
> which xl2tpd is this? Please try 1.1.07 released yesterday.
>
>   
>> conn roadwarrior-osx-xp
>>         leftprotoport=17/1701
>>         rightprotoport=17/%any
>>         rekey=no
>>         also=roadwarrior
>>
>> conn roadwarrior
>>         right=%any
>>         type=tunnel
>>     
>
> That should be type=transport for l2tp connections. If it gives an error with
> the below rightsubnet=vhost line, then leave out the type= completely.
>
>   
>>         pfs=no
>>         rightsubnet=vhost:%no,%priv
>>         authby=rsasig
>>         leftrsasigkey=%cert
>>         rightrsasigkey=%cert
>>         left=%defaultroute
>>         leftcert=vpn_cert.pem
>>         auto=add
>>     
>
> Paul
>   
Same problem.  I changed the type back to transport and installed .07  I 
can cleanly connect with a single client with no issues.  When a second 
client attaches the first connection is dropped by pluto and xl2tpd goes 
berzerk.

Dan



More information about the Users mailing list