[Openswan Users] KLIPS on CentOS 5.1

David McCullough David_Mccullough at securecomputing.com
Mon Dec 1 18:01:26 EST 2008


Jivin Paul Wouters lays it down ...
> On Mon, 1 Dec 2008, Sergio Cioban Filho wrote:
> 
> > Thanks for yor answer.
> > I've tried to use version 2.6.19, but same error has ocurred.
> > The SELinux has disabled.
> > The output of ipsec barf is attached.
> 
> I don't see anything wrong. Are you using ping -I ? since you did not
> add leftsourceip= and rightsourceip= ?

I am looking at a problem in this area.

Are you using KLIPS + ALG support ?

In my testing the tunnel is up fine, can receive packets from the
remote end ok, but if you turn on debug at the remote end the packets being
by KLIPS+ALG are not healthy.

Can you check packets coming the other way ?

Cheers,
Davidm

-- 
David McCullough,  david_mccullough at securecomputing.com,   Ph:+61 734352815
Secure Computing - SnapGear  http://www.uCdot.org   http://www.snapgear.com


More information about the Users mailing list