[Openswan Users] openswan VPN between OpenSWAN and a client vpn
santi santi santi
santi-ti at hotmail.com
Tue Apr 28 05:15:28 EDT 2009
Hi
I´m sorry, ok upgrade version 2.4.12.
> ipsec verify
Checking your system to see if IPsec got installed and started correctly:
Version check and ipsec on-path [OK]
Linux Openswan U2.4.12/K2.6.24-24-generic (netkey)
Checking for IPsec support in kernel [OK]
NETKEY detected, testing for disabled ICMP send_redirects [OK]
NETKEY detected, testing for disabled ICMP accept_redirects [OK]
Checking for RSA private key (/etc/ipsec.secrets) [OK]
Checking that pluto is running [OK]
Two or more interfaces found, checking IP forwarding [OK]
Checking NAT and MASQUERADEing [OK]
Checking for 'ip' command [OK]
Checking for 'iptables' command [OK]
Opportunistic Encryption Support [DISABLED]
You can help my with configuration tunnel??
> > conn tunel
> > auth=esp
> > authby=secret
> > auto=add
> > compress=no
> > dpdaction=clear
> > dpddelay=30
> > dpdtimeout=120
> > esp=aes128-sha1
> > ike=aes128-sha
> > ikelifetime=60m
> > keyingtries=3
> > keylife=20m
> > left=172.16.0.10
> > leftsubnet=172.16.0.0/24
> > leftnexthop=172.16.0.1
> > pfs=no
> > rekeymargin=3m
> > right=%any
> > rightsubnet=172.16.0.15/24
Thanks!!!
From: santi-ti at hotmail.com
To: paul at xelerance.com
Date: Tue, 28 Apr 2009 10:59:24 +0200
CC: users at openswan.org
Subject: Re: [Openswan Users] openswan VPN between OpenSWAN and a client vpn
Thanks Pau
I do not know how to upgrade, do not get
> ipsec
verify
Checking
your system to see if IPsec got installed and started correctly:
Version
check and ipsec on-path [OK]
Linux
Openswan U2.4.9/K2.6.24-24-generic (netkey)
Checking for
IPsec support in kernel
[OK]
NETKEY
detected, testing for disabled ICMP send_redirects [OK]
NETKEY
detected, testing for disabled ICMP accept_redirects [OK]
Checking for
RSA private key (/etc/ipsec.secrets)
[OK]
Checking
that pluto is running [OK]
Two or more
interfaces found, checking IP forwarding
[OK]
Checking NAT
and MASQUERADEing
[OK]
Checking for
'ip' command
[OK]
Checking for
'iptables' command
[OK]
> Date: Mon, 27 Apr 2009 12:34:54 -0400
> From: paul at xelerance.com
> To: santi-ti at hotmail.com
> CC: users at openswan.org
> Subject: Re: [Openswan Users] openswan VPN between OpenSWAN and a client vpn
>
> On Mon, 27 Apr 2009, santi santi santi wrote:
>
> > This problem with Openswan version U2.4.9/K2.6.24-24-generic.
>
> upgrade to at least 2.4.14.
>
> > conn tunel
> > auth=esp
> > authby=secret
> > auto=add
> > compress=no
> > dpdaction=clear
> > dpddelay=30
> > dpdtimeout=120
> > esp=aes128-sha1
> > ike=aes128-sha
> > ikelifetime=60m
> > keyingtries=3
> > keylife=20m
> > left=172.16.0.10
> > leftsubnet=172.16.0.0/24
> > leftnexthop=172.16.0.1
> > pfs=no
> > rekeymargin=3m
> > right=%any
> > rightsubnet=172.16.0.15/24
>
> This tunnel will surely complete implode on itself. It lives on
> both sides of the tunnel AND it is using its own range to tunnel
> itself.
>
> Paul
Más rápido, sencillo y seguro. Descárgate ya el nuevo Internet Explorer 8 ¡Es gratis!
_________________________________________________________________
¿Quieres crear tus propios emoticonos gratis? Descubre cómo hacerlo en el Club Oficial de Messenger
http://vivelive.com/ilovemessenger/
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.openswan.org/pipermail/users/attachments/20090428/569e2390/attachment.html
More information about the Users
mailing list