[Openswan Users] Problem with openswan in embedded system

Panagiotis Tamtamis tamtamis at gmail.com
Mon Dec 6 04:11:11 EST 2010


Hello to all,

I am trying to install and operate openswan to an embedded system. Its a PBX
to be exact. Openswan has been compiled and installed successfully as it
seems, but when I am trying to make a tunnel I have an error which I
cannot comprehend.

below is the error output

HOOME:/etc # ipsec auto --verbose --up sample
002 "sample" #1: initiating Main Mode
104 "sample" #1: STATE_MAIN_I1: initiate
003 "sample" #1: received Vendor ID payload [Openswan (this version) 2.6.31
]
003 "sample" #1: received Vendor ID payload [Dead Peer Detection]
002 "sample" #1: transition from state STATE_MAIN_I1 to state STATE_MAIN_I2
106 "sample" #1: STATE_MAIN_I2: sent MI2, expecting MR2
002 "sample" #1: transition from state STATE_MAIN_I2 to state STATE_MAIN_I3
108 "sample" #1: STATE_MAIN_I3: sent MI3, expecting MR3
003 "sample" #1: received Vendor ID payload [CAN-IKEv2]
002 "sample" #1: Main mode peer ID is ID_IPV4_ADDR: '192.168.173.111'
002 "sample" #1: transition from state STATE_MAIN_I3 to state STATE_MAIN_I4
004 "sample" #1: STATE_MAIN_I4: ISAKMP SA established {auth=OAKLEY_RSA_SIG
cipher=aes_128 prf=oakley_sha group=modp2048}
002 "sample" #2: initiating Quick Mode
RSASIG+ENCRYPT+TUNNEL+PFS+UP+IKEv2ALLOW {using isakmp#1 msgid:af67a9c2
proposal=defaults pfsgroup=OAKLEY_GROUP_MODP2048}
117 "sample" #2: STATE_QUICK_I1: initiate
002 "sample" #2: route-host output: select() error: Bad file descriptor
003 "sample" #2: route-host command exited with status 255
032 "sample" #2: STATE_QUICK_I1: internal error
003 "sample" #2: ERROR: netlink response for Add SA
esp.76250eed at 192.168.173.20 included errno 3: No such process
032 "sample" #2: STATE_QUICK_I1: internal error
003 "sample" #2: ERROR: netlink response for Add SA
esp.76250eed at 192.168.173.20 included errno 3: No such process
032 "sample" #2: STATE_QUICK_I1: internal error
003 "sample" #2: ERROR: netlink response for Add SA
esp.76250eed at 192.168.173.20 included errno 3: No such process
032 "sample" #2: STATE_QUICK_I1: internal error
003 "sample" #2: ERROR: netlink response for Add SA
esp.76250eed at 192.168.173.20 included errno 3: No such process
032 "sample" #2: STATE_QUICK_I1: internal error


Its seems that the quick mode handshake fails. From the debug output I
figured out that the last command "route-host" from the updown scripts
fails. But I don't know what these commands are doing to the system.
Does anyone have any idea what it might goes wrong here??

Thanks a lot in advance!



-- 
Think simple!
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.openswan.org/pipermail/users/attachments/20101206/af6df03b/attachment.html 


More information about the Users mailing list