[Openswan Users] Error with road connection

Sasa sasa at shoponweb.it
Fri Sep 25 09:26:55 EDT 2009


Hi, when I try to vpn connection (from xp) I have this error:

[root at fw ~]# tcpdump -i eth0 host 82.104.x.y
14:40:25.148881 IP hosty-x-static.104-82-b.business.telecomitalia.it.isakmp 
 > 85-18-z-zz.ip.fastwebnet.it.isakmp: isakmp: phase 1 I ident
14:40:25.259322 IP 85-18-z-zz.ip.fastwebnet.it > 
hosty-x-static.104-82-b.business.telecomitalia.it: ICMP 
85-18-z-zz.ip.fastwebnet.it udp port isakmp unreachable, length 348

My ipsec.conf is:

config setup
  interfaces="ipsec0=eth0"
  virtual_private=%v4:192.168.0.0/16,%v4:172.16.0.0/12,%v4:!10.0.0.0/24
  nat_traversal=yes
conn %default
      authby=rsasig
conn left-road
    auto=add
    authby=secret
    pfs=no
    rekey=no
 #sede A uff left (locale)
         left=85.18.z.zz
      leftnexthop=85.18.z.zx
      leftprotoport=17/1701
  #right
      right=%any
      rightprotoport=17/1701
      rightsubnet=vhost:%no,%priv
include /etc/ipsec.d/examples/no_oe.conf

Thanks.

------

   Salvatore.




More information about the Users mailing list