[Openswan Users] Tunnel but no l2tp connection with openswan-2.6.19 and xltpd-1.2.3

milan.lesnik at uni-mb.si milan.lesnik at uni-mb.si
Wed Dec 17 15:23:50 EST 2008


Hello

> > I updated our VPN server from Fedora FC6 (Kernel
> > 2.6.22/openswan-2.4.5/xl2tpd-1.1.11) to Fedora 10 (Kernel
> > 2.6.27/openswan-2.6.19/xl2tpd-1.2.3) successfully  but ...
> > now the WinXP Clients can't connect to my network.
> > Tunnel work but no connection to xl2tp.
> 
> It's a known problem with openswan and netkey. We're working on it.

I need a NAT-T and I want to test openswan-2.6.x (klips and netkey code). Which version of kernel I can use? 

I've been playing with openswan-2.6.14, openswan-2.6.16 on kernel 2.6.19.7 (the last kernel version I apply NAT-T patch successfully) but when I load module ipsec I got this message: 

"Dec 17 19:29:20 v-debian kernel: klips:pfkey_address_build: address->sa_family=0 not supported."

pluto starts, but client never connect (one combination freeze my VPN server).

I was not able to compile ipsec module against kernel 2.6.19.7 with openswan-2.6.18, openswan-2.6.19 and openswan-2.6.20dr2.

Milan
-- 
----------------------------------------------------------------------
|Milan Lesnik, system manager         |http://rcum.uni-mb.si/~milan  |
|University Computer Centre, Maribor  |http://www.uni-mb.si/         |
|Tel: +386 2 2355 300                 |email: milan.lesnik at uni-mb.si |
|Fax: +386 2 2355 316                 |DECMail-Slovenia: rcum::milan |
----------------------------------------------------------------------
|    UNIX was not designed to be a secure OS - Sysadmin, June 97     |
----------------------------------------------------------------------




More information about the Users mailing list