[Openswan Users] Ubuntu - Cisco help please...

Avesh Agarwal avagarwa at redhat.com
Mon Jan 25 13:25:02 EST 2010


On 01/21/2010 03:20 PM, openwan wan wrote:
> Hello everybody,
> I am asking for help after spending two days to get this working. I 
> want to connect from my ubuntu machine having a public ip address to 
> couple of pcs inside a corporation. These PCs have 172.x.x.x 
> addresses. I dont have any subnet behind my public machine that is 
> running OpenSwan, that is the machine that will do the talking to the 
> PCS and also runs the OpenSwan. Is it possible at all? The PCs are 
> protected by a Cisco PIX. here is my ipsec.conf file.
>
> type=           tunnel
> authby=         secret
> #RRT
>  left=           xx.xx.xx.xx
> #leftsubnet= 192.168.1.0/24 <http://192.168.1.0/24>
> leftnexthop=    %defaultroute
>  #SAA
>  right=          yy.yy.yy.yy
> rightsubnet= 172.33.15.0/24 <http://172.33.15.0/24>
> rightnexthop=   %defaultroute
> esp=            3des-md5
>  keyexchange=    ike
> pfs=            no

Did you try pfs=yes?
>  auto=           start
>
> The tunnel itself is nto getting established, I keep getting Pluto 
> error NO_PROPOSAL accepted. Any help will be appreciated. Thanks.
>
>
> _______________________________________________
> Users at openswan.org
> http://lists.openswan.org/mailman/listinfo/users
> Building and Integrating Virtual Private Networks with Openswan:
> http://www.amazon.com/gp/product/1904811256/104-3099591-2946327?n=283155
>    

-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.openswan.org/pipermail/users/attachments/20100125/95105358/attachment-0001.html 


More information about the Users mailing list