[Openswan Users] Openswan-3.0.06: `ipsec auto --up ifx` failed.

Paul Wouters paul at xelerance.com
Thu Nov 8 09:48:28 EST 2007


On Thu, 8 Nov 2007, KokHow.Teh at infineon.com wrote:

> [root at Danube:~ 3]# ipsec auto --up ifx
> 104 "ifx" #1: STATE_MAIN_I1: initiate
> 003 "ifx" #1: received Vendor ID payload [Openswan (this version)
> 3.0.06GITGITGIT  X.509-1.5.4 PLUTO_SENDS_VENDORID PLUTO_USES_KEYRR]
> 003 "ifx" #1: received Vendor ID payload [Dead Peer Detection]
> 106 "ifx" #1: STATE_MAIN_I2: sent MI2, expecting MR2
> 108 "ifx" #1: STATE_MAIN_I3: sent MI3, expecting MR3
> 004 "ifx" #1: STATE_MAIN_I4: ISAKMP SA established
> {auth=OAKLEY_PRESHARED_KEY cipher=aes_128 prf=oakley_md5 group=modp1536}
> 117 "ifx" #2: STATE_QUICK_I1: initiate
> 010 "ifx" #2: STATE_QUICK_I1: retransmission; will wait 20s for response
> 010 "ifx" #2: STATE_QUICK_I1: retransmission; will wait 40s for response
> 031 "ifx" #2: max number of retransmissions (2) reached STATE_QUICK_I1.
> No acceptable response to our first Quick Mode message: perhaps peer
> likes no  proposal

The other end should have a message in the log what it does not like.

Paul


More information about the Users mailing list