[Openswan Users] Requesting help, no route to host

Paul Wouters paul at xelerance.com
Wed Jun 18 11:20:06 EDT 2008


On Wed, 18 Jun 2008, Robert wrote:

> conn wlw-office-annex
> 	auto=start
> 	#
> 	left=192.168.50.174
> 	leftcert=eng.pem
> 	leftid="xxxxxxxxxx"
> 	#
> 	rightid = "yyyyyyyyyyyyyyyy"
> 	right = xxxxxxxx.dyndns.org
> 	rightnexthop = 192.168.50.254

> ipsec__plutorun: 027 bad left --id: unknown OID in ID_DER_ASN1_DN
> (ignored)

I've never seen this, let's hope it is indeed ignored without problems.

> ipsec__plutorun: ...could not add conn "wlw-office-annex"
> ipsec__plutorun: 104 "wlw-office-annex" #1: STATE_MAIN_I1: initiate
> ipsec__plutorun: ...could not start conn "wlw-office-annex"

> pluto[24031]: "wlw-office-annex" #1: initiating Main Mode
> pluto[24031]: "wlw-office-annex" #1: ERROR: asynchronous network error
> report on eth0 (sport=500) for message to 76.211.66.174 port 500,
> complainant 192.168.50.174: No route to host [errno 113, origin ICMP type
> 3 code 1 (not authenticated)]

You can (or may not) reach 76.211.66.174 on port 500. So it is a routing
or firewall issue most likely.

Paul


More information about the Users mailing list