[Openswan Users] Problem in NAT-Traversal - Reg

Prasath RK prasath at multitech.co.in
Fri Feb 1 04:59:13 EST 2008


Hi,

I am implementing NAT-Traversal in SOHO VPN product.

I am getting segmentation fault after ISAKMP SA has been established.

The logs are below:

Jan  1 00:14:14 ipsec__plutorun: /lib/ipsec/_plutorun: line 1:  1736
Segmentation fault      /bin/ipsec/pluto --nofork --secretsfile
/var/run/ipsecfiles/ipsec.secrets --ipsecdir /var/run/ipsecfiles/ipsec.d
--debug-none --uniqueids --nat_traversal --virtual_private
%v4:192.168.0.0/16,%v4:!192.168.2.0/24
Jan  1 00:14:14 pluto[1736]: "test" #2: sent MR3, ISAKMP SA established
Jan  1 00:14:14 pluto[1736]: | NAT-T: new mapping 192.168.51.109:500/4500)
Jan  1 00:14:14 pluto[1736]: "test" #2: transition from state
STATE_MAIN_R2 to state STATE_MAIN_R3
Jan  1 00:14:14 pluto[1736]: "test" #2: transition from state
STATE_MAIN_R1 to state STATE_MAIN_R2
Jan  1 00:14:13 pluto[1736]: "test" #2: NAT-Traversal: Result using RFC
3947 (NAT-Traversal): peer is NATed
Jan  1 00:14:13 pluto[1736]: "test" #2: transition from state
STATE_MAIN_R0 to state STATE_MAIN_R1
Jan  1 00:14:13 pluto[1736]: "test" #2: responding to Main Mode
Jan  1 00:14:13 pluto[1736]: packet from 192.168.51.109:500: received
Vendor ID payload [Dead Peer Detection]
Jan  1 00:13:58 pluto[1736]: "test" #1: initiating Main Mode
Jan  1 00:13:58 pluto[1736]: added connection description "test"
Jan  1 00:13:56 pluto[1736]: adding interface ipsec0/eth0 192.168.51.108:4500
Jan  1 00:13:56 pluto[1736]: adding interface ipsec0/eth0 192.168.51.108:500
Jan  1 00:13:56 pluto[1736]: adding interface ipsec1/br0 192.168.3.108:4500
Jan  1 00:13:56 pluto[1736]: adding interface ipsec1/br0 192.168.3.108:500
Jan  1 00:13:55 pluto[1736]:   including NAT-Traversal patch (Version 0.6c)
Jan  1 00:13:55 pluto[1736]: port floating activate 1/1
Jan  1 00:13:55 pluto[1736]: Setting port floating to on
Jan  1 00:13:55 pluto[1736]: Starting Pluto (Openswan Version 2.3.1
X509_VERSION)
Jan  1 00:13:55 ipsec_setup: Starting Openswan IPsec U/K2.3.1...
Jan  1 00:13:55 ipsec_setup: ...Openswan IPsec started

Could you please help me in solving this problem?


Thanks,
Regards,
Prasath RK.





More information about the Users mailing list