[Openswan Users] FAQ, no connection is known for ...

Paul Wouters paul at xelerance.com
Wed Jul 18 18:36:39 EDT 2007


On Wed, 18 Jul 2007, Roland Roberts wrote:

> Jul 18 16:18:09 tycho pluto[1410]: "rlent"[2] 208.54.65.47 #2: cannot
> respond to IPsec SA request because no connection is known for
> 192.168.3.0/24===216.254.78.84[@gw.astrofoto.org]...208.54.65.47[@aristarchus.rlent.pnet]===10.250.102.177/32
>
> Here is the gateway configuration:

You didn't include your config setup part. Does it include 10.0.0.0/8 in virtual_private?
Does it have nat_traversal enabled?

> conn rlent
>     left=216.254.78.84
>     leftid=@gw.astrofoto.org
>     leftsubnet=192.168.3.0/24
>     leftrsasigkey=...
>     rightnexthop=%defaultroute
>     right=%any
>     rightid=@aristarchus.rlent.pnet
>     rightrsasigkey=...
>     auto=add

Missing: rightsubnet=vhost:%priv,%no

Paul
-- 
Building and integrating Virtual Private Networks with Openswan:
http://www.amazon.com/gp/product/1904811256/104-3099591-2946327?n=283155


More information about the Users mailing list